Cybersecurity

The digital security of healthcare institutions and data is a growing concern, with an increasing number of cyberattacks each year against healthcare systems, which are seen as easy targets. Cyber attacks often use ransomware to target personal health information, patient data and medical devices to cut off access to the data until a ransom is payed to the hacker. Cybercriminals have become more sophisticated, using malware, ransomware and spyware to attack outdated and vulnerable systems and software. Due to the interconnected nature of hospital IT systems today, the weakest link can be older web-enabled medical devices, including clinical and non-clinical systems. Employees are also a major target of attacks via malicious e-mails that prompt them to open attachments that then download malware onto the hospital's IT system.

hospital ransom hoax

Hospitals snail-mailed ransomware hoax; FBI investigation ongoing

A hospital in California received a physical letter in the mail stating its data had been compromised, only to discover the claim was part of a nationwide "social engineering scam." 

Optum UnitedHealthcare UnitedHealth Group HQ

Maryland insurer sues Change Healthcare for $900K

Over a year after the breach on Change Healthcare, CareFirst BlueCross BlueShield of Maryland has filed a lawsuit saying it suffered data loss stemming from the incident. 

artificial intelligence AI in healthcare cybersecurity

HIMSS survey report: Beware insider threats to cybersecurity involving AI

Almost one in three healthcare organizations allow their people to use AI without formal restrictions. 

Thumbnail

Hospital faces $3.5M settlement after sharing patient data with Facebook

That number could rise to $6.75 million, depending on the number of patients who sign onto the class-action settlement levied against Virginia Mason Medical Center. The hospital does not admit to wrongdoing. 

Thumbnail

Data trove of 1.6M patient records discovered online

A cybersecurity researcher made the discovery. The database, in the care of a clinical trials company, was not password protected or encrypted. 

veterans health administration efficiency

DOD contractor hit with $11M fine for health data mismanagement

A U.S. military contractor has agreed to an $11.2 million settlement with the U.S. Department of Justice to resolve allegations it lied about properly securing sensitive patient data tied to the Tricare program.

cybercrime data breaches in healthcare

FDA warns of cybersecurity vulnerabilities in patient monitors

The agency said Contec and Epsimed monitors connected via WiFi are particularly susceptible to cyberattack and could be used to gain access to hospital systems. 

cleveland clinic settles for failing to disclose research funding

Academic health system agrees to $8M settlement following data breach

The cyberattack on University of Missouri Health Care’s systems happened in 2020 and affected 190,000 patients.

Around the web

If the Trump administration continues taking a laissez-faire stance toward AI—including AI used in healthcare—why not let the states go it alone on regulating the technology? 

Boston Scientific has announced another significant M&A deal, scooping up an Israeli medtech company focused on RDN technology. 

Harvard’s David A. Rosman, MD, MBA, explains how moving imaging outside of hospitals could save billions of dollars for U.S. healthcare.