Search site
Find podcasts, news, articles, webinars, and contributors in one search.
Health IT News
Browse by topic
Most-read stories in the last 7 days
4,419 stories
Jun 25, 2024·Bleeping Computer
UnitedHealth disclosed the types of sensitive medical and patient data stolen during the February ransomware attack on its subsidiary, Change Healthcare. The breach exposed substantial health insurance details, medical records, billing information, and personal identifiers of potentially a third of Americans. Despite not having exact numbers, UnitedHealth will mail breach notifications in July, with free credit monitoring and identity theft services available for those affected. The attack, attributed to the BlackCat ransomware gang, caused significant disruptions in the US healthcare system and has resulted in $872 million in losses to date, with the company's data now possibly compromised due to ransom non-compliance and secondary threats.
Jun 25, 2024·Wired
The article discusses a shift in Apple's approach to integrating artificial intelligence (AI) into its products and services. Rather than launching standalone AI products, Apple is quietly embedding AI-driven features to enhance user experiences across its existing ecosystem. This strategy includes improved personalization and efficiency in apps, optimizing hardware and software integration without drawing overt attention to the AI components themselves.
Jun 25, 2024·Mashable
OpenAI's CTO, Mira Murati, has provided new insights into the upcoming GPT-5, suggesting a substantial leap in AI intelligence compared to its predecessors. In an interview, she explained that while GPT-3 demonstrated toddler-level intelligence and GPT-4 was comparable to a smart high schooler, GPT-5 is expected to possess Ph.D.-level intelligence for specific tasks. However, Murati emphasized that this advanced capability is not universal and remains task-specific. The release of GPT-5 has been pushed back to late 2025 or early 2026, thus extending the wait for this highly anticipated advancement.
Jun 25, 2024·Cybersecurity Dive
Generative AI is intensifying concerns in the cybersecurity sector as AI-generated threats have already impacted the majority of organizations, yet many are unprepared to handle such attacks. The rapid advancement of AI in both corporate and consumer interactions necessitates a reevaluation of security strategies, particularly around AI governance and data training practices. There is a significant skills gap in AI security, highlighting the urgency for cybersecurity professionals to enhance their expertise. Managed service providers (MSPs) could provide interim support, but ultimately, internal teams must focus on building AI capabilities, starting with sandbox training using synthetic data. Addressing the complexity of AI in cybersecurity will involve ongoing education and the integration of AI into security toolkits to maintain compliance and strong security hygiene.
Jun 25, 2024·SecurityAffairs
The U.S. Treasury's Office of Foreign Assets Control (OFAC) sanctioned twelve executives from Kaspersky Lab, citing national security risks posed by the company's ties to the Russian government. This follows the Biden administration's ban on the sale of Kaspersky antivirus software, effective July 20, 2024, due to concerns over Russia's potential misuse of the software to access sensitive U.S. data. The Department of Commerce also added Kaspersky entities to the Entity List, restricting their operations. Current U.S. users of Kaspersky products are urged to switch to alternative software for security reasons, though they are not penalized for existing use.
Jun 25, 2024·wired.com
The article discusses the significant impact of ransomware attacks on health care providers, emphasizing how these cyberattacks can cripple medical systems and disrupt patient care for extended periods. In addition to the immediate challenges caused by the attacks, hospitals face further delays due to bureaucratic processes, specifically the requirement for "assurance" or "attestation" letters aimed at ensuring other organizations that it is safe to reconnect with the affected systems. These letters, while not legally mandated, are intended to mitigate risk but often prolong system downtime, posing further threats to patient safety. Experts argue for more efficient processes and potential federal support to accelerate recovery and minimize disruptions.
Jun 24, 2024·Press Release
Cone Health has signed an agreement to join Risant Health, pending regulatory approvals. As part of this collaboration, Cone Health aims to expand access to value-based care within North Carolina. Risant Health, a nonprofit created by Kaiser Foundation Hospitals, focuses on integrating organizations to deliver superior health outcomes through value-based care. Despite this new affiliation, Cone Health will retain its brand, leadership, and continue serving its community. This move marks Risant Health's continued expansion, following its integration with Geisinger earlier this year.
Jun 24, 2024·Work Shift
The article discusses how pioneering universities are exploring applications for OpenAI's ChatGPT Edu platform in higher education. Arizona State University, the University of Pennsylvania’s Wharton School, and Columbia University are among the early adopters, using the tool for tasks such as evaluating language proficiency, enhancing student engagement, and analyzing public health data. Despite the slow adoption of generative AI in higher education, institutions involved in preliminary trials are helping shape its use in academia. OpenAI aims to launch ChatGPT Edu more broadly by summer, emphasizing benefits like advanced text interpretation and customizable features tailored for educational settings, while addressing faculty concerns and promoting a culture of innovation.
Jun 24, 2024·arstechnica
Nearly half of Dell's workforce has declined to return to the office, opting instead to continue working remotely. This shift highlights a growing trend of employees favoring remote work over traditional office settings, challenging corporate policies and potentially reshaping future workplace strategies. The article delves into the implications of this trend for businesses and employee productivity.
Jun 24, 2024·The Hacker News
The U.S. Department of Commerce's Bureau of Industry and Security has announced a ban prohibiting Kaspersky Lab's U.S. subsidiary from offering its security software due to national security concerns. This ban extends to all of Kaspersky's affiliates, subsidiaries, and parent companies, citing the risk posed by the Russian government's potential influence and cyber capabilities. The ban, effective from July 20, allows the company to continue providing updates to existing customers until September 29. Kaspersky, which has faced multiple restrictions over its ties to Russia, argues that the decision is based on geopolitical tensions and ignores the transparency measures it has implemented.
Jun 24, 2024·The Atlanta Journal-Constitution
Vikas Singla, an Atlanta-based cybersecurity executive, has been sentenced to two years of home detention after hacking the Gwinnett Medical Center's computer system in an attempt to boost his struggling company's business. As part of his sentence, Singla also paid over $800,000 in restitution. The hack disrupted more than 200 phones, leaked patient data on social media, and generated over 200,000 emails through the hospital's network. Despite these actions, no patients were harmed. Singla's legal team argued that his sentence should consider his medical condition, charitable work, and lack of prior criminal history.
Jun 24, 2024·wsj.com
Change Healthcare has started notifying individuals affected by a data breach. The incident involved unauthorized access to a network that may have exposed personal and medical information of patients. The company is taking measures to enhance security protocols and provide support to those impacted by the breach. For more details, you can access the full article through the provided link.
Jun 24, 2024·Forbes
The U.S. government has mandated that federal employees update their Google Pixel devices by July 4 due to a high-severity firmware vulnerability, CVE-2024-32896, which Google acknowledged might be under limited, targeted exploitation. This zero-day issue, integrated into Android's recent feature drop, necessitates urgent action not only from government agencies but also other enterprises and individual users, especially those connecting to enterprise systems. While Google and GrapheneOS have rolled out necessary updates for Pixel devices, the vulnerability persists in other Android devices without immediate remediation. As multiple threats, including malware on the Play Store and the Rafel trojan, continue to challenge Android security, timely compliance with update protocols is crucial to mitigate risks.
Jun 24, 2024·npr.org
A ransomware attack on Ascension, one of the largest health care systems in the U.S., severely disrupted patient care by locking clinicians out of critical electronic health systems. Nurses and doctors reported numerous lapses, including medication errors and delayed lab results, due to the abrupt shift from electronic to manual systems. While the health system claimed readiness for such disruptions, many staff members noted a lack of adequate training for extended downtime. The attack underscores the health sector's vulnerability to cyberattacks and the need for improved cybersecurity measures, as highlighted by recent government recommendations to bolster security standards in health care.
Jun 21, 2024·MeriTalk
Sen. Ron Wyden criticized the Biden administration's timeline for implementing healthcare cybersecurity regulations, urging for faster action due to the pressing nature of the threat. Highlighting recent ransomware attacks, Wyden emphasized that measures such as multi-factor authentication are basic yet essential steps that have been neglected. He stressed that while the administration is making progress, their goal of having regulations in place by the end of the year is inadequate given the current cybersecurity landscape. Wyden called for immediate action to prevent healthcare systems from remaining vulnerable to cyber-attacks.
Jun 21, 2024·Becker's Hospital Review
Tampa General Hospital's partnership with Palantir Technologies has led to significant improvements, including a 30% reduction in sepsis patient length of stay and millions in revenue cycle enhancements. Leveraging Palantir's analytics, the hospital has optimized sepsis protocols, improved charge capture by $4 million, and enhanced efficiency in post-anesthesia care through predictive bed placements. Benefits extend to patients, clinicians, and administrative staff via detailed patient itineraries, streamlined operations, and workflow automation. Future plans include diving deeper into AI and automation to boost predictive analytics and operational efficiency, exploring tools like ChatGPT and Office 365 Copilot for internal training and productivity.
Jun 21, 2024·theregister.com
A global survey by Nash Squared reveals that the anticipated transformative impact of Generative AI (GenAI) on the workplace has not yet materialized, despite significant vendor valuations and lofty societal predictions. Interviews with 322 tech leaders globally indicate that while 51% of organizations have implemented GenAI to varying degrees, and 21% to a greater extent, the practical uses have mostly been limited to personal productivity tools like document creation and research. Many organizations are still in the experimental phase, with 39% reporting little to no impact from the technology. The survey also highlights that concerns about misuse, budgetary constraints, and an unproven business case for mass investment are hindering broader adoption. Additionally, the effect on jobs has been minimal, with only 1% of roles being replaced by GenAI and 10% seeing changes in job roles.
Jun 21, 2024·hackread.com
Broadcom has issued a security advisory, VMSA-2024-0012, detailing three critical vulnerabilities in VMware vCenter Server identified as CVE-2024-37079, CVE-2024-37080, and CVE-2024-37081. The first two, which are heap overflow flaws with a 9.8 CVSS score, could allow remote code execution via the DCERPC protocol, posing significant risks to managed virtual environments. The third vulnerability, with a 7.7 CVSS score, enables local users to escalate privileges on vCenter Server appliances. Although these vulnerabilities have not been exploited yet, their potential impact on data security and operational integrity is severe. Broadcom urges organizations to promptly patch these vulnerabilities due to the absence of viable workarounds. Industry experts emphasize the need for strict access controls and network isolation to mitigate risks.
Jun 21, 2024·healthit.gov
Since 2014, the Office of the National Coordinator for Health Information Technology (ONC) has tracked the progress of hospital and physician interoperability in the U.S., focusing on the electronic exchange of patient health information across four domains: finding, sending, receiving, and integrating. Significant improvements have been observed, with 70% of hospitals reporting engagement in all domains by 2023, up from 23% in 2014. However, ONC is now shifting to a more rigorous definition of interoperability that emphasizes routine data exchange, revealing deeper insights into how consistently hospitals and physicians can access and utilize critical health information. Future efforts aim to achieve widespread, routine, and high-value interoperability to enhance patient care quality and continuity across the healthcare system.
Jun 21, 2024·itpro
A new study from Pure Storage reveals that 81% of CIOs and IT leaders anticipate outgrowing their current data center capacity due to increasing AI demands, with 80% worrying about falling behind competitively if infrastructure can't keep up. The study predicts a shift in business spending from infrastructure to data management and growth. Currently, infrastructure is the largest AI-related cost (36%), but in two years, 40% foresee data management costs dominating. Infrastructure concerns are influencing business decisions, prompting some to turn to public cloud solutions, despite rising costs leading 85% to reassess their infrastructure strategies. The emphasis is on thoughtful investment and innovative capacity to support AI adoption while managing risk.