Cybersecurity

The digital security of healthcare institutions and data is a growing concern, with an increasing number of cyberattacks each year against healthcare systems, which are seen as easy targets. Cyber attacks often use ransomware to target personal health information, patient data and medical devices to cut off access to the data until a ransom is payed to the hacker. Cybercriminals have become more sophisticated, using malware, ransomware and spyware to attack outdated and vulnerable systems and software. Due to the interconnected nature of hospital IT systems today, the weakest link can be older web-enabled medical devices, including clinical and non-clinical systems. Employees are also a major target of attacks via malicious e-mails that prompt them to open attachments that then download malware onto the hospital's IT system.

BCH CIO shares experience with Anonymous cyberattack

BOSTON--Boston Children’s Hospital (BCH) faced a bizarre cyberthreat earlier this year and learned valuable lessons to prepare for future incidents, according to Daniel Nigrin, MD, MS, the organization’s senior vice president of information services and CIO, who shared the experience during a session at HIMSS’ Privacy and Security Forum on Sept. 8.

Thumbnail

Identity theft ring cited in AltaMed breach

Los Angeles-based AltaMed Health Services has notified nearly 3,000 patients that their personal data are at risk after learning of a former AltaMed employee’s involvement in an identity theft ring.

Thumbnail

HHS: Healthcare.gov breach did not compromise personal data

Hackers breached the Healthcare.gov website in July when they uploaded malicious software to a test server, but there’s no sign that personal data are at risk.

California breach impacts 6.5K

A California hospital has notified 6,500 patients of a breach to their health information following the unauthorized removal of records from the hospital premises.

Memorial Hermann breach impacts 10K

An employee inappropriately accessing confidential information of patients is the source of a data breach in Texas impacting more than 10,000 individuals.

Redspin Releases IT Security Advisory for Healthcare CEOs

CARPINTERIA, Calif., Sept. 2, 2014--Redspin, Inc., a leading provider of HIPAA security risk assessments and penetration testing services, today released an IT security advisory specifically for senior executives in the healthcare industry.

Laptop theft cause of Cedars-Sinai breach

Cedars-Sinai Health System is alerting at least 500 patients that their health information may be at risk following the theft of one of its laptops, reports SC Magazine.

Less than one-third of health apps have privacy policies

In a survey of the 600 mostly commonly used mobile health apps, only 30.5 percent, or 183, have privacy policies, according to a brief communication published in the Journal of the American Medical Informatics Association.

Around the web

The tirzepatide shortage that first began in 2022 has been resolved. Drug companies distributing compounded versions of the popular drug now have two to three more months to distribute their remaining supply.

The 24 members of the House Task Force on AI—12 reps from each party—have posted a 253-page report detailing their bipartisan vision for encouraging innovation while minimizing risks. 

Merck sent Hansoh Pharma, a Chinese biopharmaceutical company, an upfront payment of $112 million to license a new investigational GLP-1 receptor agonist. There could be many more payments to come if certain milestones are met.