Search Results

The default setting for search results displays All Content. If you prefer to see recent content only, please adjust the date filter.

386 Results Found

ARPA-H launches new program to enhance, automate cybersecurity for health care facilities 

The Department of Health and Human Services' Advanced Research Projects Agency for Health May 20 announced the launch of a $50 million cybersecurity program that would create tools for information technology teams in health care to enhance cybersecurity measures.

Agencies issue guidance on mitigating cyberthreats with limited resources 

The Cybersecurity and Infrastructure Security Agency along with international agencies May 14 released guidance for high-risk nonprofit and other resource-constrained community organizations to assist in understanding and mitigating cyberthreats.

Report: Delayed or missing payments increased for hospitals in first quarter

Hospitals and health systems nationwide saw a sizable increase in delayed or missing payments in first quarter 2024, according to a report released May 10 by Strata on health care performance trends.

Agencies warn of accelerating attacks on health care by Black Basta ransomware group

The Federal Bureau of Investigation, Cybersecurity and Infrastructure Security Agency, Department of Health and Human Services, and Multi-State Information Sharing and Analysis Center May 10 released a joint cybersecurity advisory to provide information on Black Basta, a ransomware variant whose actors have encrypted and stolen data from at least 12 out of 16 critical infrastructure sectors, including the health care and public health sector.

DOJ charges Russian national with developing, operating LockBit ransomware

The Department of Justice May 7 announced more than two dozen criminal charges against Dimitry Yuryevich Khoroshev, 31, of Voronezh, Russia, for his alleged role as the creator, developer and administrator of the LockBit ransomware group.

AHA, other hospital groups urge UHG to formalize breach notification plans following Change Healthcare cyberattack 

The AHA and other national hospital groups May 8 sent a letter to UnitedHealth Group, urging the organization to formally accept responsibility for issuing breach notifications on behalf of providers or customers following cyberattacks if protected health information or personally identifiable information is stolen.

CISA extends comment period for proposed rule on cyber incident reporting

The Cybersecurity and Infrastructure Security Agency May 3 extended the comment period to July 3 for the April 4 proposed rule that would implement cyber incident and ransom payment reporting requirements under the Cyber Incident Reporting for Critical Infrastructure Act of 2022.

White House releases critical infrastructure memo empowering CISA to strengthen health care security 

The Biden Administration April 30 released a memo announcing updated critical infrastructure protection requirements, which include the Cybersecurity & Infrastructure Security Agency acting as the National Coordinator for Security and Resilience.

Agencies issue cyber advisory on North Korean spear phishing efforts 

The FBI, State Department and National Security Agency issued a warning about attempts by North Korean state-sponsored cyberthreat actors to exploit improperly configured domain-based message authentication, reporting and conformance record policies to conceal social engineering attempts.

Lawmakers grill UHG CEO at hearings following Change Healthcare cyberattack

Senate and House lawmakers May 1 grilled UnitedHealth Group CEO Andrew Witty about the continued fallout from the Feb. 22 cyberattack on Change Healthcare — the most significant and consequential cyberattack on the U.S. health care system in American history.