Cybersecurity

The digital security of healthcare institutions and data is a growing concern, with an increasing number of cyberattacks each year against healthcare systems, which are seen as easy targets. Cyber attacks often use ransomware to target personal health information, patient data and medical devices to cut off access to the data until a ransom is payed to the hacker. Cybercriminals have become more sophisticated, using malware, ransomware and spyware to attack outdated and vulnerable systems and software. Due to the interconnected nature of hospital IT systems today, the weakest link can be older web-enabled medical devices, including clinical and non-clinical systems. Employees are also a major target of attacks via malicious e-mails that prompt them to open attachments that then download malware onto the hospital's IT system.

UnitedHealth Group - 2

Change Healthcare notifies patients their medical records may have been taken in breach

A HIPAA notification posted to the company’s website said details about patients’ diagnoses and treatments may have been stolen by hackers.

cyberattack cybersecurity IT

Cybersecurity incident reporting rule would exclude insurers, vendors

Hospitals and provider groups have responded with confusion to a rule proposed by the Cybersecurity and Infrastructure Security Agency requiring hospitals and providers to comply with stringent reporting requirements that overlap with HIPAA.

Former Microsoft employee arrested for stealing 1.2M patient records

A former employee at Nuance Communications, a Microsoft subsidiary, stands accused of taking patient data from Geisinger Health system shortly after their termination.

Thumbnail

Federal judge strikes down HHS ban on tracking cookies

Providers argued the HHS overstepped its regulatory authority. A federal court in Texas agreed.

UnitedHealthcare UHC UnitedHealth

Change Healthcare begins sending breach notifications

UnitedHealth Group has said it will begin notifying patients directly in July. There’s still no evidence medical records were exposed to hackers.

doctor's open hand waiting for a payment

Emergency reimbursement for Change Healthcare breach ends in July

The last day for providers and suppliers to apply for Medicare reimbursement through the advanced payment program is July 12.

UnitedHealthcare UHC UnitedHealth

UnitedHealth needs to be solely responsible for HIPAA notifications after Change Healthcare breach, letters demand

The ONC has fallen short of plainly stating that UnitedHealth is required to send the notifications, leaving providers in regulatory limbo.

artificial intelligence cybersecurity cybercrime patient data privacy

HHS releases DDoS attack response plan

The Health Sector Cybersecurity Coordination Center's analysis details how healthcare organizations can thwart a botnet invasion.

Around the web

The American College of Cardiology has sent a letter to HHS Secretary Robert F. Kennedy Jr. that outlines some of the organization’s central priorities and concerns. 

One product is being pulled from the market, and the other is receiving updated instructions for use.

If the Trump administration continues taking a laissez-faire stance toward AI—including AI used in healthcare—why not let the states go it alone on regulating the technology?