Cybersecurity

Cyber Threat Intelligence, Alerts and Reports
As part of the AHA’s commitment to helping hospitals and health systems prepare for and prevent cyber threats, we have gathered the latest government cyber threat intelligence and alerts and Health Information Sharing and Analysis Center (H-ISAC) reports.
You may be asked to enter your AHA member credentials to view certain reports and intelligence alerts.
Cybersecurity & Risk Advisory
Learn how AHA can help hospitals and health systems prepare for and mitigate cyber threats through the expertise of John Riggi, AHA’s National Advisor for Cybersecurity and Risk.
Epic’s MyChart has shared examples from potential phishing schemes observed as recently this month that include email messages linking to a fake MyChart website displaying erroneous medical records and others notifying of a free “2026 Medicare Health Kit.”
Voice Security: Protecting Patients, Care Teams & Critical Communications While Building Physician Engagement Healthcare's Most Overlooked Cybersecurity RiskTuesday, October 20, 2026 1 - 2 p.m. Eastern; noon - 1 p.m. Central; 10 - 11 a.m. Pacific
On August 22, 2026, threat actors linked to the extortion group ShinyHunters executed a targeted social engineering campaign against ReliaQuest using voice phishing and lookalike single sign-on (SSO) infrastructure.
On August 22, 2026, threat actors linked to the extortion group ShinyHunters executed a targeted social engineering campaign against ReliaQuest using voice phishing and lookalike single sign-on (SSO) infrastructure.
A daily ransomware tracker at TLP Green to increase awareness of the ransomware threat.
H-ISAC TLP Green: Daily Cyber Headlines for August 24, 2026.
Cisco has released security updates addressing several high-severity vulnerabilities discovered during internal testing across its Crosswork and Secure Workload platforms.
The National Security Agency and other federal agencies released a joint advisory Aug. 18 warning of active cyber threats to Siemens S7 Series programmable logic controllers, which are industrial computers used to monitor essential equipment.
The Hidden Compliance and Cybersecurity Risks in Retired IT Assets Preventing Data Breaches, Compliance Failures and Regulatory Scrutiny Through Proper IT Asset DispositionTuesday, November 3, 2026 1 - 2 p.m. Eastern; noon - 1 p.m. Central; 10 - 11 a.m. Pacific
A joint advisory released Aug. 19 by the FBI, Cybersecurity and Infrastructure Security Agency, and the Department of Health and Human Services provides updates on activity by Medusa, a foreign ransomware-as-a-service variant first identified in 2021.