Cybersecurity

Cyber Threat Intelligence, Alerts and Reports

As part of the AHA’s commitment to helping hospitals and health systems prepare for and prevent cyber threats, we have gathered the latest government cyber threat intelligence and alerts and Health Information Sharing and Analysis Center (H-ISAC) reports.

You may be asked to enter your AHA member credentials to view certain reports and intelligence alerts.

Cybersecurity & Risk Advisory

Learn how AHA can help hospitals and health systems prepare for and mitigate cyber threats through the expertise of John Riggi, AHA’s National Advisor for Cybersecurity and Risk.

Learn More

This Joint Cybersecurity Advisory was coauthored by the U.S. Cybersecurity and Infrastructure Security Agency (CISA), the Australian Cyber Security Centre (ACSC), the United Kingdom’s National Cyber Security Centre (NCSC), and the U.S. Federal Bureau of Investigation (FBI).
Twelve vulnerabilities, with an overall CVSS score of 9.8, have been discovered in firmware provided by UDP Technology to security camera manufacturer Geutebrück, affecting four camera, and two encoder lines.
U.S. hospitals and health systems face growing financial pressure from cyberattacks, credit rating agency Fitch Ratings reported.  
The FBI in coordination with the Office of Private Sector (OPS) prepared the attached Liaison Information Report (LIR) to inform the healthcare sector about phishing attempts, via facsimile, requesting physician authorization for fraudulent healthcare services and devices.
This edition of Hacking Healthcare includes by providing a brief update on REvil and its apparent disappearance.
A new Windows 10 and 11 local elevation of privilege vulnerability has been discovered that enables users with low privileges to access sensitive Registry database files.
A trusted intelligence partner is providing this daily ransomware tracker at TLP:GREEN for purposes of increasing ransomware threat awareness.
Executive Summary Since June 2020, unidentified threat actors have targeted vulnerabilities in certain Ivanti Pulse Connect Secure products. Threat actors gained initial access through the targeting of the following vulnerabilities: CVE-2019-11510, CVE-2020-8260, CVE-2020-8243, and CVE-2021-…
H-ISAC TLP Green: Daily Cyber Headlines for July 22, 2021
The major Headlines, the “Good Stuff”, US Snapshots, US Vaccinations, US Variant Cases, Highlights, as well as key Statistics, Vaccine and Treatment information, US Restrictions and the Back to Normal Index related to the novel coronavirus pandemic.