Cybersecurity

The digital security of healthcare institutions and data is a growing concern, with an increasing number of cyberattacks each year against healthcare systems, which are seen as easy targets. Cyber attacks often use ransomware to target personal health information, patient data and medical devices to cut off access to the data until a ransom is payed to the hacker. Cybercriminals have become more sophisticated, using malware, ransomware and spyware to attack outdated and vulnerable systems and software. Due to the interconnected nature of hospital IT systems today, the weakest link can be older web-enabled medical devices, including clinical and non-clinical systems. Employees are also a major target of attacks via malicious e-mails that prompt them to open attachments that then download malware onto the hospital's IT system.

hospital ransomware cybercrime hacking

North Korean hospital hacker indicted in the US

A North Korean national who may or may not still reside in his home country has been indicted for allegedly leading ransomware attacks against U.S. hospitals.

Thumbnail

UnitedHealth sued by pharmacists, providers hurt by Change Healthcare hack

The National Community Pharmacists Association and nearly 40 provider groups are seeking class-action status for their lawsuit against UnitedHealth Group and its subsidiaries. The plaintiffs argue they are still struggling to file claims after the February breach of Change Healthcare.

Thumbnail

Nationwide IT outage leaves hospitals without EHRs

Many hospitals that use Epic were unable to access services, forcing them to operate on pen-and-paper and cancel non-emergency care delivery. The disruption was caused by an error with security vendor CrowdStrike.

Thumbnail

Senators introduce bill to bolster healthcare cybersecurity

The Healthcare Cybersecurity Act would improve cooperation between HHS and CISA to ideally speed up the response to cyberattacks.

Thumbnail

State attorneys general send warnings of Change Healthcare breach, urge residents to respond

Several state attorneys general have issued notices to residents regarding the Change Healthcare breach, asking them to sign up for credit monitoring and identity theft protection.

UnitedHealth Group - 2

Change Healthcare notifies patients their medical records may have been taken in breach

A HIPAA notification posted to the company’s website said details about patients’ diagnoses and treatments may have been stolen by hackers.

cyberattack cybersecurity IT

Cybersecurity incident reporting rule would exclude insurers, vendors

Hospitals and provider groups have responded with confusion to a rule proposed by the Cybersecurity and Infrastructure Security Agency requiring hospitals and providers to comply with stringent reporting requirements that overlap with HIPAA.

Former Microsoft employee arrested for stealing 1.2M patient records

A former employee at Nuance Communications, a Microsoft subsidiary, stands accused of taking patient data from Geisinger Health system shortly after their termination.