Search Results

The default setting for search results displays All Content. If you prefer to see recent content only, please adjust the date filter.

171 Results Found

2025 Cybersecurity Year in Review, Part Two: Mitigating Third-Party Risk, Ensuring Clinical Continuity and Addressing AI Risk

In part two of a recent blog, AHA National Advisor for Cybersecurity and Risk John Riggi and AHA Deputy National Advisor for Cybersecurity and Risk Scott Gee highlight three trends that shaped 2025

CISA warns of vulnerability in F5 BIG-IP products

The Cybersecurity and Infrastructure Security Agency Oct. 15 released an emergency directive advising federal agencies to take stock of their F5 BIG-IP application products, as a nation-state-affiliated cyberthreat actor has compromised F5’s systems and has stolen files, including a portion of the company’s BIG-IP source code and vulnerability information.

AHA blog: 2025 Cybersecurity Year in Review, Part One — Breaches and Defensive Measures

Over 33 million Americans have had their health care records stolen in 2025, continuing an alarming trend of massive cyberattacks largely targeting third-party vendors and unencrypted data.

HSCC launches toolkit to strengthen essential health care services and prevent cyberattacks

The Health Sector Coordinating Council Oct. 7 released its Sector Mapping and Risk Toolkit, created to help health care providers and other organizations visualize key services that support essential health care workflows and determine which of them present critical risk of cyberattack disruption capable of impacting care delivery, operations and liquidity.

Urgent action recommended on critical Oracle vulnerability

The AHA Oct. 6 released a Cybersecurity Advisory (https://www.aha.org/advisory/2025-10-06-hospitals-are-oracle-customers-urged-take-immediate-action-address-security-vulnerability) urging immediate action against a critical Oracle E-Business Suite vulnerability that is remotely exploitable without authentication.

AHA launches revamped Cybersecurity and Risk Advisory webpage

The AHA has launched an enhanced Cybersecurity and Risk webpage designed to help health care organizations strengthen their defenses against emerging cyber and physical security threats.

Notice warns of new LockBit 5.0 ransomware variant

A Health-ISAC (Information Sharing and Analysis Center) bulletin released Oct. 1 warns of a recently released LockBit 5.0 ransomware variant that poses a threat to health care and other sectors.

AHA podcast: The Texas Model for Cyber Resilience in Health Care 

Fernando Martinez, Ph.D., chief digital officer at the Texas Hospital Association, shares how Texas and the THA are building regional resilience through cyber command structures, statewide coordination and tabletop exercises.

Senate fails to pass CR, government shutdown begins while health programs expire

The federal government shut down Oct. 1 following a failed Senate vote on the House-passed continuing resolution to fund the government by midnight Sept. 30.

Phishing operation attacking at least 20 health care organizations disrupted by Microsoft

Microsoft Sept. 16 announced it had disrupted a growing phishing service that had targeted at least 20 U.S. health care organizations and seized 338 websites associated with cyber threat group RaccoonO365.