Tag: healthcare
-
ShinyHunters Threatens to Leak Amazon One Medical Records
Extortion Gang Claims It Stole 8.8TB of Healthcare Firm’s Data. Prolific digital extortion gang ShinyHunters is threatening to dump on the darkweb 8.8 terabytes of data it allegedly stole from One Medical, a unit of Amazon that provides onsite and virtual primary care services for employees of more than 8,500 U.S. clients. First seen on…
-
The Cyber Express Weekly Roundup: Cybersecurity Weekly Round on Emerging Threats, Data Breaches, and Global Policy Shifts
This week’s weekly roundup of cybersecurity developments highlights an expanding intersection of cyber risk, regulatory action, and enterprise vulnerability. Across healthcare, technology platforms, gaming companies, and government policy, organizations continue to confront a rapidly evolving cybersecurity landscape where data exposure, advanced intrusion tactics, and platform security failures are interconnected. First seen on thecyberexpress.com Jump to article: thecyberexpress.com/tce-weekly-roundup-global-threats/
-
Addressing Quantum Readiness in Healthcare Security
Healthcare organizations should prepare for post-quantum cryptography without overreacting to hype, said John Frushour, CISO of New York-Presbyterian Hospital. Stronger encryption standards, commercial software support and attention to medical devices can help providers manage emerging risks. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/interviews/addressing-quantum-readiness-in-healthcare-security-i-5551
-
ICO Cautions Healthcare Worker After Princess of Wales Incident
Tags: healthcareHospital insider escapes criminal prosecution after attempting to sell royal’s medical records First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/ico-cautions-healthcare-worker/
-
UK critical infrastructure hit by 200 cyber incidents in a year, agency says
Head of National Cyber Security Centre says UK in ‘ongoing contest with capable adversaries’ and AI could add to threatThe UK’s critical national infrastructure has been hit by more than 200 cyber incidents over the past year and state-linked assailants were behind three-quarters of the attacks, according to the state cybersecurity body.Richard Horne, the chief…
-
Another healthcare firm attacked days after Novo Nordisk breach
Medical technology company iRhythm Holdings disclosed a cyberattack involving certain third-party-hosted business applications that resulted in the theft of patient protected … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/17/irhythm-data-breach-patient-health-information-stolen/
-
UK critical infrastructure hit by 200 cyber incidents in a year, agency says
Head of National Cyber Security Centre says UK in ‘ongoing contest with capable adversaries’ and AI could add to threatThe UK’s critical national infrastructure has been hit by more than 200 cyber incidents over the past year and state-linked assailants were behind three-quarters of the attacks, according to the state cybersecurity body.Richard Horne, the chief…
-
HTTP/2 Bomb Attacks Put Telcos, Healthcare Orgs at Risk
The denial-of-service (DoS) exploit takes advantage of two features in HTTP/2 that were designed to save Internet bandwith, not power massive amplification attacks. First seen on darkreading.com Jump to article: www.darkreading.com/vulnerabilities-threats/http-2-bomb-attacks-telcos-healthcare
-
iRhythm Hit by Cyberattack, Patient Data Stolen and Ransom Demanded
iRhythm disclosed a cyberattack via third-party apps where patient and proprietary data was stolen, followed by a ransom demand. iRhythm Technologies is a U.S.-based digital healthcare company specializing in remote cardiac monitoring and arrhythmia detection. Its best-known product is the Zio, a wearable patch that continuously records a patient’s heart rhythm for up to several…
-
iRhythm discloses data breach, says hackers stole patient info
Digital healthcare company iRhythm Holdings has disclosed a data breach after hackers stole patients’ personal and health information stored on third-party-hosted business applications. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/irhythm-discloses-data-breach-says-hackers-stole-patient-info/
-
Novo Nordisk discloses data breach affecting patient and healthcare professional information
First seen on scworld.com Jump to article: www.scworld.com/brief/novo-nordisk-discloses-data-breach-affecting-patient-and-healthcare-professional-information
-
Ozempic Drug Maker Loses Clinical Trial Data in Hack
Novo Nordisk Breach Involved ‘Copying’ of Patient, Healthcare Provider Info. A hack on Danish pharmaceutical manufacturer Novo Nordisk has compromised some patients’ clinical trial information, the maker of popular weight loss and diabetes treatment drugs including Wegovy and Ozempic said. The company is working to bring affected IT systems back online. First seen on govinfosecurity.com…
-
ISMG Editors: Anthropic Unleashes Claude Mythos 5
Also: Identity as the New Control Plane, Healthcare’s AI Governance Challenge. In this week’s panel, four ISMG editors discussed Anthropic’s ambitious release of the Mythos and Fable 5 models, how cybersecurity teams are strengthening identity in complex cloud environments and the healthcare industry’s efforts to govern artificial intelligence responsibly. First seen on govinfosecurity.com Jump to…
-
Joint Commission Certification Targets Healthcare AI Risks
Program Focuses on AI Governance, Safety, Privacy, Bias and Transparency. Accreditation organization Joint Commission is rolling out a voluntary program for certifying the responsible deployment and use of artificial intelligence technologies by U.S. healthcare provider organizations, including governance, safeguards, monitoring processes and education. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/joint-commission-certification-targets-healthcare-ai-risks-a-31949
-
The Invisible Battlefield: How Cyberwar Is Reshaping Everyday Life
Former National Cyber Director Chris Inglis warns that cyberattacks threaten hospitals, utilities, and essential services. First seen on darkreading.com Jump to article: www.darkreading.com/endpoint-security/invisible-battlefield-cyber-war-reshaping-everyday-life
-
When Burnout Becomes a Cybersecurity Control Failure
Peter Coroneos of Cybermindz on Stress, the Brain and Human Capability Risk. Cybersecurity burnout is no longer just a wellness concern. It’s an operational risk that quietly degrades the capability of cyber defenders, says Peter Coroneos, founder and chairman of Cybermindz. Cyber burnout levels now exceed those of frontline healthcare workers. First seen on govinfosecurity.com…
-
Senate Committee Leader Seeks Answers on NYC Health Hack
Sen. Bill Cassidy Quizzes NYC Health CEO and NYC Mayor About Cyber Practices. The chair of the U.S. Senate health committee is seeking answers from New York City officials – including the city’s mayor – about a 2025 hack at the country’s largest municipal public health system, New York City Health + Hospitals, that affected…
-
AI Exploit Risks Pushing Healthcare Security Shift
MultiCare Health CISO Jason Elrod on Need for Faster Cyber Resilience. Emerging AI tools can identify and exploit software vulnerabilities within minutes, forcing healthcare organizations to rethink cyber strategies. Jason Elrod, CISO of MultiCare Health System, explains why exploitability management, microsegmentation and AI-driven resilience matter more than ever. First seen on govinfosecurity.com Jump to article:…
-
What Trump’s AI Executive Order Means for Healthcare Sector
Experts: If Implemented Effectively, Directive Could Help Health Organizations. Although President Donald Trump’s executive order this week on artificial intelligence barely mentions healthcare, some experts said the directive could potentially have a positive impact on the critical infrastructure sector – if implemented effectively. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/what-trumps-ai-executive-order-means-for-healthcare-sector-a-31901
-
What Trump’s AI Executive Order Means for Healthcare Sector
Experts: If Implemented Effectively, Directive Could Help Health Organizations. Although President Donald Trump’s executive order this week on artificial intelligence barely mentions healthcare, some experts said the directive could potentially have a positive impact on the critical infrastructure sector – if implemented effectively. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/what-trumps-ai-executive-order-means-for-healthcare-sector-a-31901
-
Building a Digital Fortress: Why Cyber Security Matters More Than Ever
As a society, our reliance on technology has never been greater. From banking and shopping to remote work and healthcare, we have access to information in an instant. As good as technology is at helping us with daily tasks, it also comes with risks. Cybersecurity is no longer a concern for IT departments in a…
-
Infosecurity Europe: Reactive Security Is Failing Healthcare Organizations, Experts Warn
A perfect storm of legacy devices, hyper connectivity and human fatigue is bad news for the healthcare sector, warns Cyber Salus First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/reactive-security-failing/
-
Mayo Clinic, Microsoft Team Up on AI for Doctors, Patients
Healthcare Sector AI Expansion Raises Questions on Governance, Privacy and Safety. Mayo Clinic and Microsoft are planning a new healthcare-specific frontier artificial intelligence model that aims to help clinicians make earlier diagnoses and deliver more personalized treatments to their patients. The clinic plans to make the new model available to patients and doctors. First seen…
-
Anthropic Expands Mythos to Global Critical Infrastructure
Project Glasswing Expansion Reaches Power, Healthcare, Telecom and Water Operators. Anthropic expanded Project Glasswing to 150 additional organizations across more than 15 countries, granting critical infrastructure operators, NATO and cybersecurity agencies controlled access to Claude Mythos Preview as the company seeks broader cyber defense coverage while limiting misuse risks. First seen on govinfosecurity.com Jump to…
-
AI Governance Playbook Calls for Enterprise Risk Controls
Healthcare Coordinating Council Highlights AI Risks, Potential Medical Mishaps. Healthcare organizations face an array of difficult cybersecurity, privacy, patient safety, supply chain and operational resiliency issues as they roll out artificial intelligence tools. A new Health Sector Coordinating Council playbook aims to help by providing a voluntary governance framework. First seen on govinfosecurity.com Jump to…
-
Anthropic scales Claude Mythos to critical infrastructure in 15+ countries
Anthropic is expanding Project Glasswing, its security vulnerability program, and access to Mythos to 150 organizations across 15 countries, targeting critical infrastructure in power, water, healthcare, and communications where a cyberattack could affect 100 million people. First seen on techcrunch.com Jump to article: techcrunch.com/2026/06/02/anthropic-scales-claude-mythos-to-critical-infrastructure-in-15-countries/
-
Why Firms Struggle With Vendor Security After They Sign
Study: Monitoring Vendor Risk Remains Much Harder Than Onboarding Third Parties. Healthcare organizations are getting better vetting third-party vendors, including suppliers of medical devices, software and other products. But once these vendors are on board, healthcare firms still struggle with monitoring their security posture and ensuring they keep their promises. First seen on govinfosecurity.com Jump…
-
Third-Party Cyberattack Impacts Patient Information at The Oncology Institute
The Oncology Institute disclosed a data breach tied to a third-party vendor, potentially exposing patient information after a 2025 cyberattack. The Oncology Institute has confirmed that patient information was impacted in a cybersecurity incident involving a third-party software provider. The healthcare network first disclosed the security breach in November 2025 while the vendor’s investigation was…

