HHS' information security program was deemed "not effective" for fiscal year 2021 in an audit conducted by the department's Office of Inspector General, consistent with the determinations for fiscal years 2018, 2019 and 2020.
Cybersecurity
Ransomware attacks are a serious and growing threat to the healthcare sector as organizations deploy more Internet of Medical Things devices. According to the Ponemon Institute, more than 20 percent of attacks during COVID-19 were rooted in IoMT devices.
Philips is one of the first health tech companies to receive critical vulnerability classification authority by a CISA-sponsored cybersecurity standards organization.
Health tech startup myNurse is shutting down its operations, the announcement coming the same day the company notified patients of a data breach that exposed their personal information.
Google users can now ask for their personal data, like emails, addresses and phone numbers to be stripped from search results, reported NPR May 2.
Over the last few weeks, several health systems have been the victims of cyberattacks, with hackers breaching patient data and taking down entire systems.
Glenwood Springs, Colo.-based Valley View Hospital was the target of a phishing attack when the email accounts of four employees were accessed by unauthorized individuals, affecting the personal data of about 21,000 people.
In April, 29 organizations reported to HHS that 1.1 million people were affected by data breaches.
The Cybersecurity and Infrastructure Security Agency issued an advisory April 27 warning organizations to apply timely patches and implement a centralized patch management system to reduce their risk of compromise from the most common cyber vulnerabilities exploited by malicious cyber…
Paying the ransom to hackers to resolve ransomware attacks has become more difficult as the U.S. continues to levy sanctions against Russia and Russian-associated entities, The Wall Street Journal reported April 28.