A Rutgers-led study found hospitals that use third-party tracking pixels on their websites were significantly more likely to experience data breaches. Researchers at Rutgers Business School-Newark and New Brunswick analyzed 12 years of website data from 1,201 hospitals and found…
Cybersecurity
Clinicians across the country are using AI tools their organizations never approved, often to solve real, urgent problems. The phenomenon, known as shadow AI, sits at the center of a governance challenge that is growing faster than most health systems…
Three health systems took home honors at the 2026 CSO Cybersecurity Awards. The May 11 ceremony in Nashville, Tenn., recognized “security initiatives that delivered measurable results and not just innovation in isolation — across areas such as AI compliance and…
The U.S. Cybersecurity and Infrastructure Security Agency has rolled out an initiative to fortify critical infrastructure sectors’ cybersecurity against attacks from nation-state threat actors, the American Hospital Association reported. The project underscores the importance of preemptive isolation and recovery planning when…
A federal lawsuit tied to Prospect Medical Holdings’ 2023 data breach has been voluntarily dismissed. According to a filing in the U.S. District Court for the Eastern District of Pennsylvania, plaintiffs and Los Angeles-based Prospect Medical Holdings jointly filed a…
Hospital nurses feel unprepared to safely manage patient care during prolonged cyber-related technology outages, a May 6 report from Black Book Research found. The report, titled “The Nurse Cyber-Downtime Gap,” surveyed 480 registered nurses and examined hospital cyber-downtime readiness from…
Healthcare was the most targeted industry in a recent phishing campaign detected by Microsoft, the company said. From April 14-16, the phishing emails targeted over 35,000 users across more than 13,000 organizations in 26 countries, the majority (92%) in the…
The U.S. Cybersecurity and Infrastructure Security Agency, National Security Agency and international cybersecurity arms have issued a guide about the careful adoptoin of agentic AI. “The guidance primarily focuses on large language model-based agentic AI systems and highlights key security…
The Joint Commission and the American Hospital Association created a first-of-its-kind program designed to help hospitals and health systems to sustain safe clinical operations during cyber-related technology outages. The Cyber Resilience Readiness program is a structured, free-to-complete self-assessment tool that…
A Maryland man has been charged with digitally snooping on his coworkers while working for a Maryland health system. Matthew Bathula, 41, of Clarksville, Md., faces two counts of unauthorized access to a protected computer and one count of aggravated…