Boston Scientific has fully restored manufacturing, order fulfillment and shipping operations following the cybersecurity event it first identified Aug. 25. The medical device maker said products are now moving through its distribution network at or above normal levels. The company…
Cybersecurity
The FBI has issued a public service announcement warning of a cyberattack technique called “OAuth consent phishing” that lets hackers access victims’ accounts without stealing a password. The scheme has been active since late 2025 and targets prominent individuals, their…
Health-ISAC has issued a threat bulletin warning that the ShinyHunters cybercrime group is running targeted voice phishing (aka vishing) campaigns and registering medical-themed impersonation domains to breach health sector organizations. The nonprofit cybersecurity information-sharing group said Sept. 3 it has…
The FTC has received 166 complaints over the past five years referencing MyChart, with several related to the current “Medicare Kit” phishing wave, Gizmodo reported. The scam emails carry subject lines such as “Your MyChart Medicare Kit Awaits!” and offer…
EHR company Veradigm has disclosed a cybersecurity incident involving one of its third-party vendors. An unauthorized party obtained credentials from the vendor’s environment and used them to access a Veradigm application programming interface, downloading personal data — including Social Security…
The cybersecurity landscape is undergoing one of the most significant transformations since the advent of the internet. For decades, organizations have operated under a relatively stable assumption: software vulnerabilities would be discovered, disclosed, patched, and eventually remediated over a period…
Boston Scientific announced Sept. 8 that it has restored remote monitoring activation capability for cardiac devices following an Aug. 25 cybersecurity incident. The medtech company said healthcare professionals can now resume activation and pairing for cardiac device implant communicators and…
Annapolis, Md.-based Luminis Health has confirmed that an “unauthorized criminal actor” caused the cybersecurity incident that has disrupted systems across its network since Sept. 1. The health system said Sept. 4 its investigation is ongoing and that its teams are…
Some of Annapolis, Md.-based Luminis Health’s patients are being rerouted to other facilities and its physicians are reverting to paper charts as a cybersecurity incident continues to disrupt electronic systems. Luminis Health first disclosed the incident Sept. 1, though community…
MyChart hasn’t been hacked. Nobody’s data has leaked out of Epic Systems’ platform, and the company says its security is unaffected. And yet dozens of health systems, from academic medical centers to rural critical access hospitals, have spent the past…