Search site
Find podcasts, news, articles, webinars, and contributors in one search.
Health IT News
Browse by topic
Most-read stories in the last 7 days
4,419 stories
Aug 8, 2024·infosecurity-magazine
The recent IT outage experienced by CrowdStrike served as a preparatory exercise for a potential cyber-attack on critical infrastructure, potentially orchestrated by a nation-state like China. Jen Easterly, director of the U.S. Cybersecurity and Infrastructure Security Agency (CISA), emphasized the importance of building network resilience and reducing recovery times to withstand significant disruptions. Historical context includes the Volt Typhoon actors, state-sponsored by China, infiltrating U.S. critical infrastructure. Lessons from the CrowdStrike incident highlighted the need for collaboration, robust software design, and enhanced organizational resilience to preemptively address threats. Felicity Oswald of the UK's National Cybersecurity Centre underscored the importance of clear communication and support to handle such incidents effectively.
Aug 8, 2024·Bleeping Computer
Delta Air Lines and CrowdStrike are embroiled in a legal dispute following a significant IT outage caused by a faulty CrowdStrike software update that affected over 8.5 million Windows devices. Delta experienced five days of operational disruption, leading to stranded passengers and substantial financial losses amounting to $500 million. Delta claims CrowdStrike failed to provide adequate support, despite offers for free onsite assistance. CrowdStrike denies negligence, attributing some blame to Delta’s disaster recovery plans and questioning why competitors resolved issues more swiftly. Delta plans to pursue litigation, while CrowdStrike urges cooperation to find a resolution.
Aug 8, 2024·cybersecuritynews
CrowdStrike has released a detailed root cause analysis of the issues caused by the Falcon sensor update on July 19, 2024, which led to system crashes for some Windows users. The problem stemmed from a mismatch between expected and provided input fields in the sensor's Content Interpreter and a new Template Type introduced earlier in the year. This discrepancy was overlooked during initial testing due to wildcard matching criteria. CrowdStrike has implemented multiple mitigations, including compile-time validation and runtime checks, and engaged third-party security reviews to prevent future occurrences. Approximately 99% of affected Windows sensors were restored by July 29, with a final hotfix due by August 9.
Aug 8, 2024·thehackernews.com
CrowdStrike has published a root cause analysis explaining the Falcon Sensor software update crash known as the "Channel File 291" incident, which affected millions of Windows devices. The issue was traced to a content validation problem arising from a new Template Type designed to detect novel attack techniques on Windows systems. A mismatch between input parameters during content validation resulted in out-of-bounds memory reads, causing system crashes. CrowdStrike has implemented several measures to address the issue, including increased testing, new validation checks, and independent code reviews. Despite these efforts, Delta Air Lines claims the incident cost it $500 million in disruptions and is seeking damages from CrowdStrike and Microsoft. Both companies have responded to the criticism, suggesting Delta's issues may extend beyond the security update.
Aug 8, 2024·Medscape
The University of Texas System's audit revealed the termination of a costly $62 million collaboration between MD Anderson Cancer Center and IBM's Watson, initiated to develop the Oncology Expert Advisor for enhancing cancer care. Despite significant investments, the project, begun in 2012, faced numerous delays and scope expansions, ultimately covering only a limited range of cancers and failing to integrate with MD Anderson's electronic medical records. This termination occurred amidst the center's financial struggles, leading to job cuts, and while IBM defended the project's potential, MD Anderson seeks new partners to possibly revive it.
Aug 8, 2024·Inc
OpenAI has seen significant turnover in its top leadership, with co-founder John Schulman leaving to join rival Anthropic, and another co-founder, Greg Brockman, taking a year-long leave of absence. Earlier this year, other key figures including safety team leaders and a prominent product manager also departed. These exits, although not directly related, raise concerns about the stability and direction of the company, potentially fueling fears that profit motives are overshadowing AI safety. OpenAI has attempted to reassure stakeholders by reaffirming commitments to AI safety, but internal and external pressures remain high.
Aug 8, 2024·Becker's Hospital Review
Amazon is working with major health systems including Advocate Health Care, Mass General Brigham, and Mount Sinai to explore the application of AI for enhancing patient care and operational efficiency. Collaborations extend to insurers like Blue Shield and Prime Therapeutics. They aim to use AI for insights and automate administrative tasks through technologies like computer vision and natural language processing. Among their projects, HealthScribe is a notable service that leverages generative AI to create clinical notes from doctor-patient interactions while being HIPAA-compliant. This focus on AI aligns with other tech giants like Google and Microsoft's subsidiary Nuance, which are also integrating AI into healthcare services.
Aug 8, 2024·arstechnica
KnowBe4, a US security firm, discovered it had unknowingly hired a North Korean hacker who attempted to install malware within its network. CEO Stu Sjouwerman reported that the intruder used a stolen US-based identity and an AI-enhanced photo to pass standard hiring processes, including video interviews and background checks. Although no data breach occurred, the incident, now under FBI investigation, was detected when the hire's activities triggered security alerts from the company's Security Operations Center (SOC). The infiltrator had logged in remotely, likely from North Korea, using a VPN. KnowBe4 emphasized the importance of this incident as an organizational learning moment.
Aug 8, 2024·The Fast Mode
The Cybersecurity and Infrastructure Security Agency (CISA) has appointed Lisa Einstein as its first Chief Artificial Intelligence Officer, demonstrating the agency's commitment to responsible AI use in enhancing cyber defense and supporting critical infrastructure. Einstein, who has led CISA's AI initiatives since 2023 and served as Executive Director of the CISA Cybersecurity Advisory Committee since 2022, will continue to focus on ensuring AI is used safely and securely. This new position underscores the agency’s dedication to integrating AI into its operations and assisting critical infrastructure partners in safe AI adoption.
Aug 8, 2024·Forbes
The cybersecurity industry is currently experiencing a consolidation phase, where high-profile acquisitions and alliances aim to streamline cybersecurity solutions through platformization. While platforms promise simplicity and unified management, experts argue that this approach may not adequately address specialized threats and can lead to vendor lock-in and innovation stagnation. Industry leaders emphasize the enduring value of a modular approach, which allows for flexibility, best-of-breed solutions, and easier adaptation to emerging threats. A balanced strategy that integrates the strengths of both platformization and modularity, focusing on interoperability, can offer a more robust and adaptable cybersecurity ecosystem.
Aug 8, 2024·databreaches.net
In July, the DataBreaches log noted that six U.S. hospitals disclosed breaches, though some incidents received minimal media attention. Fairfield Memorial Hospital in Illinois appeared on LockBit3.0's leak site, acknowledging network issues but omitting details of the ransomware attack. Hospital Auxilio Mutuo in Puerto Rico reported a breach involving patient data, emphasizing ongoing investigations. Northeast Rehabilitation Hospital Network in New Hampshire detailed a ransomware incident affecting 501 patients. Millinocket Regional Hospital in Maine was claimed by RansomHub, without confirmation of a breach. Delhi Hospital in Louisiana faced attempted negotiations with R&D leak group over exfiltrated patient data. Lastly, Schneider Regional Medical Center in the Virgin Islands experienced network blockage and data theft, reported cooperating with authorities.
Aug 7, 2024·The Verge
Microsoft has introduced a new principle called the Security Core Priority, emphasizing that security is the top priority across all levels of the company. This directive, supported by CEO Satya Nadella, requires every employee to integrate security measures into their daily work routines and decision-making processes. The initiative, now accessible through the Connect tool, aims to hold employees accountable and recognize their security efforts. The Security Core Priority includes compulsory elements for all employees, along with optional sections tailored to specific roles. The approach mirrors existing core priorities such as Diversity & Inclusion, with progress reviews included in regular Connect conversations. This initiative underscores Microsoft's commitment to safeguarding its infrastructure, customers, and partners in a complex cyber threat landscape.
Aug 7, 2024·Chief Healthcare Executive
Hospitals are grappling with significant challenges in improving their cybersecurity, primarily due to difficulties in recruiting and retaining skilled professionals. Financial constraints and competition from other sectors offering higher pay and remote work opportunities exacerbate the issue. A HIMSS report indicates that 74% of healthcare IT professionals find hiring qualified cybersecurity staff a major challenge, despite increased IT budget allocations for cybersecurity. Experts highlight the need for hospitals to invest more in attracting top talent and providing growth opportunities to address these staffing shortages and protect sensitive patient data effectively.
Aug 7, 2024·Becker's Hospital Review
Artificial intelligence presents promising opportunities to address healthcare workforce shortages, but it is not a quick fix. Experts like Roxanna Gapstur, PhD RN, and Kurt Koczent highlight that AI should be viewed as an adjunct to improve efficiency, quality, and safety in specific areas, rather than a replacement for human roles. Governance and management of AI in healthcare systems are still developing, and while AI might drive workforce transformations in the long term, it aims to augment rather than replace human clinicians. Instead of reducing jobs, AI will automate routine tasks, allowing healthcare professionals to focus on more complex tasks requiring human empathy and critical thinking, ultimately enhancing patient care.
Aug 7, 2024·publication
"What Washington wants in Cures 2.0"** Reps. Diana DeGette and Larry Bucshon are advancing "Cures 2.0," legislation building on the 2016 21st Century Cures Act, aimed to enhance health data sharing, FDA approval processes, and research. The follow-up aims to address pandemic prevention and better data governance, with industry lobbyists suggesting specific improvements in these areas. Organizations such as AHIP, the American Health Information Management Association, and others provided feedback emphasizing the importance of unlocking health data to improve outcomes and reduce costs.
**Summary: Erosion of Trust in Health Care: A Public Health Crisis** A recent study published in JAMA Network Open highlights a significant decrease in trust towards physicians and hospital systems across the U.S. from the onset of the COVID-19 pandemic through January 2024. Conducted through 24 waves of surveys involving 443,455 adults, the data showed a 31.4 percentage point drop in trust, consistent across various demographics. This distrust has been correlated with lower rates of COVID-19 vaccination and poses a challenge to public health efforts. The study underscores the urgent need to restore trust in healthcare to improve compliance with health measures and outcomes, despite challenges in addressing this complex issue. **Summary: Cross-Validation of Insurer and Hospital Price Transparency Data** A study comparing price transparency data from insurers and hospitals in Mississippi revealed a low overlap but high concordance in pricing. Out of 2,000+ hospital-billing code observations, only 16.3% were present in both data sources. However, overlapping prices showed a high correlation, with 77.4% matching exactly and 84.4% within a 10% margin. This indicates accurate pricing despite administrative misalignment. The study emphasizes the need to simplify
Aug 7, 2024·StartUp Health
This week's health innovation funding highlights include significant investments across various sectors. Flo Health, a fertility-focused period-tracking app, raised $200M from General Atlantic. Mental health saw Spring Health secure $100M, while AI-driven drug discovery company Healx raised $47M. Dental AI startup Perceptive received $30M, and MedScout, focusing on commercial operations for medtech, raised $15M. Other notable funding includes Guidehealth's $14M for value-based care, and Noze's $5M for breath-based diagnostics. Additionally, an Alzheimer’s innovation initiative was launched to foster collaborative progress in the disease's prevention, diagnosis, and management.
Aug 7, 2024·Computerworld
In the article "Here's why Apple will become the world’s leading AI vendor," Jonny Evans argues that Apple is poised to dominate the AI ecosystem by leveraging its powerful Apple Silicon processors and an integrated platform that spans mobile, PC, and cloud. With upcoming device releases featuring the advanced M4 chips, Apple aims to enhance personal productivity and develop AI-specific features across its ecosystem. The company's unique approach to user privacy and extensive user base could allow it to quickly gain market traction, positioning Apple's AI capabilities as a significant innovation in a competitive landscape.
Aug 7, 2024·The Medical Futurist
The article explores three potential future scenarios for the integration of artificial intelligence in medicine: utopian, dystopian, and a balanced middle-ground. In the utopian scenario, AI augments rather than replaces doctors, enhancing their capabilities and freeing them from administrative burdens, allowing for improved doctor-patient relationships and affordable care. The dystopian view portrays a dehumanized healthcare system dominated by AI, where the doctor-patient connection is lost, and privacy is compromised. The middle-ground envisions a partnership between AI and human healthcare providers, promoting efficiency and personalized care while maintaining essential human interactions and strong regulatory frameworks. The article argues that structured, forward-thinking methodologies are essential to guide us toward this balanced future, emphasizing the importance of empathy in medical education, adaptive regulation, and AI literacy.
Aug 7, 2024·McKinsey & Company
In their article "Generative AI in healthcare: Adoption trends and what’s next," Jessica Lamb, Greg Israelstam, Rahul Agarwal, and Shashank Bhasker explore the evolving landscape of generative AI (gen AI) in the healthcare sector. The piece is based on a Q1 2024 survey indicating that over 70% of healthcare organizations are either adopting or considering gen AI technologies. The authors discuss the different approaches to implementation, the potential returns on investment, and the broad range of applications, from improving patient engagement to enhancing clinical productivity. They highlight the primary challenges, such as risk management, data infrastructure, and regulatory compliance, and underscore the need for careful governance and strategic partnerships to realize gen AI's full benefits responsibly.