Search site
Find podcasts, news, articles, webinars, and contributors in one search.
Health IT News
Browse by topic
Most-read stories in the last 7 days
1,000 stories
Feb 2, 2025·Dark Reading
Chief Information Security Officers (CISOs) are increasingly recognized as vital to organizational leadership, with a recent Splunk survey indicating that 82% now report directly to CEOs, up from 47% in 2023. This trend underscores the growing importance of cybersecurity, driving CISOs to improve their communication and understanding of business metrics. Despite this shift, many CISOs find their roles more challenging, with 53% citing increased job difficulties. Historically positioned lower in the hierarchy, CISOs often experienced high turnover due to limited agency. The current cybersecurity landscape demands their involvement in strategic decision-making, yet many still face challenges in securing adequate budgets, with only 29% reporting sufficient funding to counter current threats.
Jan 30, 2025·Infosecurity Magazine
SaaS breaches have surged by 300% in the past year, primarily due to outdated security measures failing to protect against evolving cyber threats, as reported by Obsidian Security. Cybercriminals are increasingly targeting Software as a Service platforms to access sensitive data, with the healthcare sector being the most affected, experiencing 14% of all breaches. The report reveals that the integrated nature of SaaS applications facilitates lateral movements by attackers, making compromised identities a primary cause of 85% of these incidents. This underscores the need for enhanced security protocols as organizations transition to SaaS-based data storage.
Jan 30, 2025·Cyberscoop
The Trump administration's recent decision to freeze federal aid has introduced uncertainty into cybersecurity grant programs that benefit state governments, small businesses, and international partners. An Office of Management and Budget memo mandated a pause on the disbursement of federal financial assistance, affecting various cybersecurity grants that had previously allocated substantial funding. Experts, including former DHS official Bob Kolasky, have expressed concerns that this freeze could disrupt ongoing cybersecurity initiatives, while Mississippi Rep. Bennie Thompson criticized the move as politically motivated, arguing that it undermines crucial support for states amid rising cyber threats. There are also worries about the potential consequences for U.S. foreign cyber vulnerabilities and international relations.
Jan 30, 2025·Google Cloud
Rapid advancements in AI are reshaping cybersecurity by enhancing defenses and operational efficiency, but they also present risks of misuse by malicious actors. The Google Threat Intelligence Group (GTIG) analyzed how threat actors engage with Google’s AI-powered assistant, Gemini, finding that while some have explored its capabilities for research and content generation, innovative attack techniques utilizing AI have not materialized. Most exploitation attempts involved basic tactics to bypass safety controls, yielding limited success. The report highlights significant activity from state-sponsored threat actors, particularly from Iran and China, using Gemini for reconnaissance and phishing campaigns, underscoring a shift toward more efficient cyber operations rather than groundbreaking new techniques.
Jan 29, 2025·CSO Online
Women make up only 25% of the cybersecurity workforce, highlighting a significant gap that calls for urgent change in the industry. Barriers such as misogyny and biases in education hinder women's entry into this field, despite a demand for skilled professionals. Experts recommend that educational initiatives start earlier, ideally in middle school, to spark interest among young women in cybersecurity. Furthermore, organizations need to establish strong support systems, including mentorship and family-friendly policies, to retain women in cybersecurity roles and foster a more inclusive environment.
Jan 28, 2025·Chron
A data breach involving the Texas Health and Human Services Commission has exposed the personal information of over 61,000 Texans, particularly those on public assistance programs like Medicaid and food stamps. Detected on January 6, 2025, the breach was attributed to state employees who accessed sensitive data from applicants between June 2021 and December 2024. Following the incident, which came to light on November 21, 2024, the HHSC terminated the involved employees and engaged the Office of Inspector General for further investigation. The agency plans to notify affected individuals and offer two years of free credit monitoring and identity theft protection. This breach is part of a larger pattern, as the HHSC has previously experienced incidents of unauthorized access and financial theft.
Jan 28, 2025·CFO
A recent report by insurer Chubb indicates that cybersecurity has become the leading threat to business growth, emphasizing the need for effective risk management. Based on a survey of 500 business-risk decision-makers, 40% view cyber breaches and data leaks as major sources of disruption with financial consequences. The findings reveal that a proactive approach is being taken, with 89% planning to enhance their cyber insurance and 84% prioritizing continuous monitoring of incidents. Furthermore, 60% rank cybersecurity threats as the top geopolitical risk, surpassing traditional concerns like political tensions and climate change. Additionally, 25% of respondents noted changes in government policy as another significant man-made disruption, alongside risks from social unrest linked to viral social media events.
Jan 28, 2025·Biometric Update
China's DeepSeek AI model represents a notable enhancement in China's AI capabilities focused on offensive cyber operations, raising significant cybersecurity and data privacy concerns. The model utilizes extensive datasets and advanced processing power for tasks related to cyber-espionage, cyberwarfare, and information operations, particularly threatening U.S. interests and allies. With its ability to automate vulnerability identification and discover zero-day exploits, DeepSeek could facilitate rapid and large-scale cyberattacks. The involvement of its founder, Liang Wenfeng, and his ties to the Chinese Communist Party suggest potential state-sponsored espionage risks, emphasizing vulnerabilities within the U.S. AI sector amidst growing threats from Chinese actors.
Jan 27, 2025·Forbes
A new security alert reveals that over 1 billion passwords have been compromised by malware, as detailed in the 2025 Breached Password Report from Specops Software. Despite strong password policies, the report highlights the vulnerabilities associated with password reuse, making even complex passwords susceptible to theft. Cybercriminals often employ infostealer malware to infiltrate systems through phishing or software vulnerabilities, collecting sensitive information from various sources. This underscores the need for improved security practices, such as software updates and multi-factor authentication. Additionally, a report from Cyble indicates that credentials from major cybersecurity vendors are being sold on the dark web for as little as $10.
Jan 27, 2025·BleepingComputer
CISA and the FBI have alerted organizations that hackers are actively exploiting security vulnerabilities in Ivanti Cloud Service Appliances, despite the release of patches in September and October 2024 for several critical issues, including an admin authentication bypass and remote code execution flaws. These vulnerabilities, now listed in CISA's Known Exploited Vulnerabilities Catalog, have been used in zero-day attacks to gain access, execute remote code, and establish webshells in victim networks. Federal agencies are directed to secure their Ivanti appliances under Binding Operational Directive 22-01, and both agencies strongly advise network administrators to upgrade their systems to mitigate ongoing risks.
Jan 26, 2025·CyberScoop
recently active, should be aligned more closely with the current administration's goals. The removal of all members from the Cyber Safety Review Board (CSRB), as mandated by Acting DHS Secretary Benjamine Huffman, has sparked significant concern among cybersecurity experts and lawmakers. This decision comes at a critical time when the CSRB is investigating a major breach by the Chinese hacking group Salt Typhoon. Critics, including Rep. Bennie Thompson, argue that the move could jeopardize national security by undermining the board's impartiality and effectiveness, while others believe it may shield tech companies from accountability. Conversely, Chairman Mark Green has supported the administration's right to reorganize the board in line with its objectives.
Jan 23, 2025·Cybersecurity News
Sophos Managed Detection and Response (MDR) has reported on two ransomware campaigns, labeled STAC5143 and STAC5777, that leverage Microsoft Teams vulnerabilities to breach organizational security. These campaigns exploit Teams' default settings that allow external users to engage with internal users, employing tactics such as spam emails and IT impersonation to convince victims to install harmful software. The STAC5143 campaign uses advanced tools like obfuscated JAR files and Python backdoors for system compromise, relying on covert methods to connect to command and control servers. In contrast, the STAC5777 campaign integrates malicious elements into legitimate software, notably by side-loading a harmful DLL through OneDriveStandalone.
Jan 22, 2025·Cybersecurity Dive
In response to recent telecom breaches, the Cybersecurity and Infrastructure Security Agency (CISA) has released mobile security guidelines to safeguard communications against interception and manipulation. This initiative follows intrusions linked to the Salt Typhoon threat group, which affected multiple telecom companies and compromised sensitive data. CISA urges individuals to take proactive steps to secure their devices, as it lacks confidence in the security of current telecom infrastructures. The recommendations include using encrypted messaging apps like Signal, implementing phishing-resistant authentication methods, and avoiding SMS for multifactor authentication due to its vulnerabilities.
Jan 22, 2025·TechSpot
On January 1, 1990, the first recorded ransomware attack was executed by Dr. Joseph Lewis Andrew Popp Jr., who distributed a floppy disk labeled "AIDS Information – Introductory Diskette 2.0" to approximately 20,000 individuals, targeting those involved in the AIDS epidemic. The attack exploited public fears related to AIDS, using primitive encryption techniques that affected file names instead of the files themselves, which allowed the creation of recovery tools like "AIDSOUT" and "AIDSCLEAR." Despite these tools, the attack resulted in notable financial losses and data damage for many organizations, including an Italian health agency that lost a decade's worth of research data. Popp was later apprehended, but his mental fitness for trial came into question due to his erratic behavior.
Jan 21, 2025·Cybersecurity Dive
As the cybersecurity landscape evolves, experts anticipate four major trends impacting the field by 2025. The rise of single points of failure in IT systems, highlighted by incidents such as the ransomware attack on Change Healthcare, poses a significant vulnerability. Additionally, the regulatory environment is shifting, placing increased pressure on Chief Information Security Officers (CISOs) as they navigate heightened scrutiny and redundant disclosure requests from government bodies, including the SEC's new reporting requirements for publicly traded companies. Furthermore, ongoing attacks on U.S. telecom networks, particularly by the Chinese-sponsored group Salt Typhoon, represent a serious threat to critical infrastructure, with federal authorities still evaluating their full impact.
Jan 21, 2025·HackRead
Hewlett Packard Enterprise (HPE) has experienced a significant data breach orchestrated by the hacker group IntelBroker, which has exposed sensitive information, including source code, cryptographic materials, and personally identifiable information (PII). The hacker, known for previous security incidents, is selling the stolen data online for Monero cryptocurrency. IntelBroker claims this breach was a direct attack on HPE's infrastructure, rather than through third-party systems, and provided evidence of the compromise, including screenshots and a data tree from HPE's internal systems. This breach raises concerns about the security of HPE's products and follows prior incidents, including a 2024 breach linked to Russian state-sponsored hackers.
Jan 21, 2025·Cyberscoop
Hospitals and health systems in the U.S. are experiencing a rise in cyberattacks that disrupt patient care, leading to patient diversions and appointment cancellations, which in turn affect public trust in the healthcare system. In response, the U.S. Department of Health and Human Services has intensified efforts to improve cybersecurity through a strategy focused on policy, resource allocation, and sector coordination. This includes updates to the HIPAA Security Rule, pre-market cybersecurity standards for medical devices, and additional support for smaller healthcare organizations, with a notable $240 million funding allocation for hospital preparedness in cybersecurity initiatives.
Jan 20, 2025·Security Intelligence
The ongoing tension between Chief Information Security Officers (CISOs) and Chief Executive Officers (CEOs) centers on the inadequate funding for cybersecurity, with security budgets typically comprising only 5.7% of total IT budgets. This financial shortfall limits the ability to hire skilled personnel and update crucial cybersecurity tools, with recent studies showing that budget constraints have become the leading factor in the cybersecurity skills gap. Additionally, the dynamic between CISOs and CEOs can transform how cybersecurity is viewed within organizations, particularly when it is framed as essential to business operations. Effective CISO communication of cybersecurity's business value can facilitate better budget negotiations. Recent SEC regulations have further underscored the necessity for robust cybersecurity risk management and proper funding, now requiring organizations to disclose their cybersecurity practices.
Jan 20, 2025·KWCH
Ascension hospitals experienced a significant ransomware attack affecting approximately 5.6 million individuals, with the breach dating back to February 29. The organization discovered the incident in May after detecting unusual network activity, leading to patient transfers to nearby facilities. Ascension has since engaged third-party experts to assess the damage and is notifying those impacted while offering complimentary credit monitoring and identity protection services. The compromised data may include medical records, payment details, insurance information, and government IDs, although there is no evidence that Electronic Health Records were accessed. Cybersecurity expert Kaustubh Medhe classified the breach as a "category one" data breach.
Jan 20, 2025·Apple News
President Biden has issued an executive order to enhance the nation's cybersecurity framework in response to escalating cyberattacks on critical infrastructure and government systems. The order mandates federal agencies to improve their cybersecurity practices, including the use of multi-factor authentication and enhanced incident response protocols. It also establishes a Cyber Safety Review Board to assess major cyber incidents and recommend defensive improvements. Furthermore, the directive promotes information sharing between government and private sector organizations to bolster resilience against evolving cyber threats, particularly in vulnerable sectors such as energy, healthcare, and finance.