<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">
<channel>
<title>HealthcareInfoSecurity.com  RSS Syndication</title>
<link>https://www.healthcareinfosecurity.com/rssFeeds.php?type=main</link>
<description>HealthcareInfoSecurity.com RSS News Feeds on healthcare information security news, regulations, blogs and education</description>
<pubDate>Thu, 04 Nov 2021 12:38:55 -0400</pubDate>
			<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/healthcareinfosecurity/com" /><feedburner:info uri="healthcareinfosecurity/com" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><feedburner:browserFriendly></feedburner:browserFriendly><item>
			<title>BlackMatter Claims to Shut Ops; Experts Suspect Rebranding</title>
			<link>https://www.healthcareinfosecurity.com/blackmatter-claims-to-shut-ops-experts-suspect-rebranding-a-17848</link>
			<guid>https://www.healthcareinfosecurity.com/blackmatter-claims-to-shut-ops-experts-suspect-rebranding-a-17848</guid>
			<description>&lt;img src="https://130e178e8f8ba617604b-8aedd782b7d22cfe0d1146da69a52436.ssl.cf1.rackcdn.com/blackmatter-claims-to-shut-ops-experts-suspect-rebranding-imageFile-1-a-17848.jpg" align=right hspace=4&gt;&lt;b&gt;Criminal Group Announced News on Russian Site, Says Malware Research Organization vx-underground&lt;/b&gt;&lt;br&gt;Ransomware-as-a-service provider BlackMatter has ceased operations due to pressure from local authorities, malware research organization vx-underground says, citing an announcement made by the gang on a Russian underground site.</description>
			</item>
			<item>
			<title>FBI Warns of Ransomware Actors Leveraging M&amp;A Data</title>
			<link>https://www.healthcareinfosecurity.com/fbi-warns-ransomware-actors-leveraging-ma-data-a-17847</link>
			<guid>https://www.healthcareinfosecurity.com/fbi-warns-ransomware-actors-leveraging-ma-data-a-17847</guid>
			<description>&lt;img src="https://130e178e8f8ba617604b-8aedd782b7d22cfe0d1146da69a52436.ssl.cf1.rackcdn.com/ransomware-actors-leverage-ma-data-warns-fbi-imageFile-5-a-17847.jpg" align=right hspace=4&gt;&lt;b&gt;Bad Actors Learn Victim Firms' Public, Nonpublic Data Before Attack to Increase Impact&lt;/b&gt;&lt;br&gt;The Federal Bureau of Investigation has issued a notification warning to private sector companies, especially those listed or in the process of being listed on stock exchanges, to be aware of ransomware actors using their undisclosed merger and acquisition data for extortion.</description>
			</item>
			<item>
			<title>Ransomware Incidents Among Largest Breaches on Federal Tally</title>
			<link>https://www.healthcareinfosecurity.com/ransomware-incidents-among-largest-breaches-on-federal-tally-a-17846</link>
			<guid>https://www.healthcareinfosecurity.com/ransomware-incidents-among-largest-breaches-on-federal-tally-a-17846</guid>
			<description>&lt;img src="https://130e178e8f8ba617604b-8aedd782b7d22cfe0d1146da69a52436.ssl.cf1.rackcdn.com/ransomware-incidents-among-largest-breaches-on-federal-tally-imageFile-5-a-17846.jpg" align=right hspace=4&gt;&lt;b&gt;Analysis of Latest Health Data Breaches on the HHS OCR 'Wall of Shame'&lt;/b&gt;&lt;br&gt;Ransomware incidents are becoming a major cause of health data breaches affecting millions of individuals that have been reported so far in 2021, according to the latest additions to the federal tally. What else is topping the list?</description>
			</item>
			<item>
			<title>CISA Directs Federal Agencies to Patch Known Vulnerabilities</title>
			<link>https://www.healthcareinfosecurity.com/cisa-directs-federal-agencies-to-patch-known-vulnerabilities-a-17845</link>
			<guid>https://www.healthcareinfosecurity.com/cisa-directs-federal-agencies-to-patch-known-vulnerabilities-a-17845</guid>
			<description>&lt;img src="https://130e178e8f8ba617604b-8aedd782b7d22cfe0d1146da69a52436.ssl.cf1.rackcdn.com/cisa-directs-federal-agencies-to-patch-known-vulnerabilities-imageFile-2-a-17845.jpg" align=right hspace=4&gt;&lt;b&gt;BOD 22-01 Imposes Strict Deadlines for Remediation of Publicly Known Exploits&lt;/b&gt;&lt;br&gt;The U.S. Cybersecurity and Infrastructure Security Agency on Wednesday issued a new directive - BOD 22-01 - requiring federal civilian agencies to patch vulnerabilities known to be actively exploited in the wild.</description>
			</item>
			<item>
			<title>HIPAA Omnibus Final Rule</title>
			<link>https://www.healthcareinfosecurity.com/agency-releases/hipaa-omnibus-final-rule-r-2760</link>
			<guid>https://www.healthcareinfosecurity.com/agency-releases/hipaa-omnibus-final-rule-r-2760</guid>
			<description>This package of regulations includes modifications to the HIPAA privacy, security, enforcement and breach notification rules, as required under the HITECH Act.</description>
			</item>
			<item>
			<title>HITECH Act Stage 2 EHR Incentive Program Software Certification Final Rule</title>
			<link>https://www.healthcareinfosecurity.com/agency-releases/hitech-act-stage-2-ehr-incentive-program-software-certification-r-2724</link>
			<guid>https://www.healthcareinfosecurity.com/agency-releases/hitech-act-stage-2-ehr-incentive-program-software-certification-r-2724</guid>
			<description>This rule establishes criteria for electronic health records software that qualifies for Stage 2 of the HITECH Act Electronic Health Record Incentive Program. The program, part of the economic stimulus package, is providing billions of dollars in Medicare and Medicaid incentives to hospitals and physicians to spur widespread adoption of EHRs.</description>
			</item>
			<item>
			<title>HITECH Act Stage 2 EHR Incentive Program Meaningful Use Final Rule</title>
			<link>https://www.healthcareinfosecurity.com/agency-releases/hitech-act-stage-2-ehr-incentive-program-meaningful-use-final-r-2723</link>
			<guid>https://www.healthcareinfosecurity.com/agency-releases/hitech-act-stage-2-ehr-incentive-program-meaningful-use-final-r-2723</guid>
			<description>This rule establishes criteria that hospitals and physicians must meet to qualify as "meaningful users" of electronic health records and receive further financial incentives in Stage 2 of the HITECH Act Electronic Health Record Incentive Program. The program, part of the economic stimulus package, is providing billions of dollars in Medicare and Medicaid incentives to spur widespread adoption of EHRs.</description>
			</item>
			<item>
			<title>FDA: Unique Device Identification System</title>
			<link>https://www.healthcareinfosecurity.com/agency-releases/fda-unique-device-identification-system-r-2706</link>
			<guid>https://www.healthcareinfosecurity.com/agency-releases/fda-unique-device-identification-system-r-2706</guid>
			<description>This proposed rule from the U.S. Food and Drug Administration would require unique identifiers on medical devices. While the rule aims to ease the collection and analysis of data about adverse health events and help detect counterfeit products, no patient information would be collected in a proposed new FDA database to help track the safety of these devices.</description>
			</item>
			<item>
			<title>Live Webinar | ‘Tis the Season…for Fraud</title>
			<link>https://www.healthcareinfosecurity.com/webinars/live-webinar-tis-seasonfor-fraud-w-3623</link>
			<guid>https://www.healthcareinfosecurity.com/webinars/live-webinar-tis-seasonfor-fraud-w-3623</guid>
			<description />
			</item>
			<item>
			<title>Panel Discussion | The Future of Cybersecurity: Is the US Government Finally Getting Serious About Protecting Supply Chains?</title>
			<link>https://www.healthcareinfosecurity.com/webinars/panel-discussion-future-cybersecurity-us-government-finally-getting-w-3620</link>
			<guid>https://www.healthcareinfosecurity.com/webinars/panel-discussion-future-cybersecurity-us-government-finally-getting-w-3620</guid>
			<description />
			</item>
			<item>
			<title>Fireside Chat | State of Software Security: The Costly Risks of Open Source Code</title>
			<link>https://www.healthcareinfosecurity.com/webinars/fireside-chat-state-software-security-costly-risks-open-source-code-w-3619</link>
			<guid>https://www.healthcareinfosecurity.com/webinars/fireside-chat-state-software-security-costly-risks-open-source-code-w-3619</guid>
			<description />
			</item>
			<item>
			<title>Live Webinar | The 5 Myths Hindering You From SOC Automation</title>
			<link>https://www.healthcareinfosecurity.com/webinars/live-webinar-5-myths-hindering-you-from-soc-automation-w-3617</link>
			<guid>https://www.healthcareinfosecurity.com/webinars/live-webinar-5-myths-hindering-you-from-soc-automation-w-3617</guid>
			<description />
			</item>
			<item>
			<title>Why Healthcare Entities Fall Short Managing Security Risk</title>
			<link>https://www.healthcareinfosecurity.com/interviews/healthcare-entities-fall-short-managing-security-risk-i-4979</link>
			<guid>https://www.healthcareinfosecurity.com/interviews/healthcare-entities-fall-short-managing-security-risk-i-4979</guid>
			<description>Why do so many HIPAA -covered entities and their vendors do such a poor job managing security risk and safeguarding patient's protected health information? Many critical factors come into play, say Roger Severino, ex- director of HHS OCR, and Bob Chaput, founder of security consultancy Clearwater.</description>
			</item>
			<item>
			<title>Ransomware Gangs Are Not Infallible</title>
			<link>https://www.healthcareinfosecurity.com/interviews/ransomware-gangs-are-infallible-i-4978</link>
			<guid>https://www.healthcareinfosecurity.com/interviews/ransomware-gangs-are-infallible-i-4978</guid>
			<description>The latest ISMG Security Report features the fallibility of ransomware gangs and why victims should always seek help from a reputable response firm, law enforcement or other qualified expert. Also featured: Data protection advice and why the remote work model might make securing data easier.</description>
			</item>
			<item>
			<title>Why Hive Attacks Are the Latest Menace to Healthcare Sector</title>
			<link>https://www.healthcareinfosecurity.com/interviews/hive-attacks-are-latest-menace-to-healthcare-sector-i-4977</link>
			<guid>https://www.healthcareinfosecurity.com/interviews/hive-attacks-are-latest-menace-to-healthcare-sector-i-4977</guid>
			<description>Several characteristics of the Hive ransomware group make the threat actor particularly menacing to its victims, which include healthcare sector targets, says Adam Meyers, vice president of intelligence at security firm CrowdStrike.</description>
			</item>
			<item>
			<title>Case Study: Intrusion Prevention, Detection in the Cloud</title>
			<link>https://www.healthcareinfosecurity.com/interviews/case-study-intrusion-prevention-detection-in-cloud-i-4975</link>
			<guid>https://www.healthcareinfosecurity.com/interviews/case-study-intrusion-prevention-detection-in-cloud-i-4975</guid>
			<description>Chronic disease management firm Omada Health has been changing its approach to cloud intrusion prevention and detection, which is reducing time spent on investigating false positives, says the company's information security leader, Bill Dougherty.</description>
			</item>
			<item>
			<title>Changing Employee Mindsets During Digital Transformation</title>
			<link>https://www.healthcareinfosecurity.com/blogs/changing-employee-mindsets-during-digital-transformation-p-3133</link>
			<guid>https://www.healthcareinfosecurity.com/blogs/changing-employee-mindsets-during-digital-transformation-p-3133</guid>
			<description>&lt;b&gt;How CISOs Can Ensure That the Business Succeeds While It Transforms&lt;/b&gt;&lt;br /&gt;While doing digital transformation, CISOs tend to look more at technology and try to adapt it without making the distinction between technologies that are must-have and good to have. Krishnamurthy Rajesh of ICRA says CISOs must analyze risks, update security, and change the mindset of employees.</description>
			</item>
			<item>
			<title>Forget Hacking Back: Just Waste Ransomware Gangs' Time</title>
			<link>https://www.healthcareinfosecurity.com/blogs/forget-hacking-back-just-waste-ransomware-gangs-time-p-3134</link>
			<guid>https://www.healthcareinfosecurity.com/blogs/forget-hacking-back-just-waste-ransomware-gangs-time-p-3134</guid>
			<description>&lt;b&gt;Time Is Money for Criminals; Some Profits Susceptible to DDoS and Other Disruptions&lt;/b&gt;&lt;br /&gt;Who's been launching distributed denial-of-service attacks against ransomware operators' sites and cybercrime markets? Disrupting ransomware operations that rely on Tor-based data leak sites and payment portals for double extortion is an obvious move for cutting into their profits.</description>
			</item>
			<item>
			<title>Memo to Ransomware Victims: Seeking Help May Save You Money</title>
			<link>https://www.healthcareinfosecurity.com/blogs/memo-to-ransomware-victims-seeking-help-may-save-you-money-p-3131</link>
			<guid>https://www.healthcareinfosecurity.com/blogs/memo-to-ransomware-victims-seeking-help-may-save-you-money-p-3131</guid>
			<description>&lt;b&gt;Flaw in DarkSide and BlackMatter Enabled Security Firm to Decrypt Files for Free&lt;/b&gt;&lt;br /&gt;While ransomware might be today's top cybercrime boogeyman, attackers aren't infallible. The latest example: Errors in DarkSide - and its BlackMatter rebrand - enabled security experts to quietly decrypt many victims' files for free, saving millions in potential ransom payments.</description>
			</item>
			<item>
			<title>Troublemaker CISO: Do You Know What You Should Be Doing?</title>
			<link>https://www.healthcareinfosecurity.com/blogs/troublemaker-ciso-do-you-know-what-you-should-be-doing-p-3130</link>
			<guid>https://www.healthcareinfosecurity.com/blogs/troublemaker-ciso-do-you-know-what-you-should-be-doing-p-3130</guid>
			<description>&lt;b&gt;The Rant of the Day From Ian Keller, Ericsson&lt;/b&gt;&lt;br /&gt;In his second Rant of the Day for the CyberEdBoard Profiles in Leadershop blog, Ian Keller, security director at Ericsson and CyberEdBoard executive member, talks about what a CISO does - and what a CISO should do.</description>
			</item></channel></rss>
