H-ISAC: White Reports

On January 10, 2022, the Health Sector Cybersecurity Coordination Center (HC3) shared a report "December 2021 Vulnerability Bulletin" regarding vulnerabilities impacting information systems relevant to the health sector.
This week, Hacking Healthcare begins by reviewing how an AvosLocker ransomware attack bolsters our understanding of how ransomware gangs operate.
A joint Cybersecurity Advisory (CSA) to provide mitigation guidance on addressing vulnerabilities in Apache’s Log4j software library.
The Health-ISAC Threat Operations Center (TOC) continues to track ongoing developments regarding the weaponization and mitigation of CVE-2021-44228 in the logging library known as Log4j. 
This week, Hacking Healthcare begins by breaking down the issue of cyber incident reporting timelines and makes the case for engagement with regulators and legislators.
Health-ISAC and Microsoft have partnered together to deliver a new medium to discuss notable vulnerabilities patched in the recent Patch Tuesday update.
On December 13, 2021, Kronos reported a ransomware event impacting Kronos Private Cloud (KPC) instances.
The Health-ISAC Threat Operations Center (TOC) has been closely tracking ongoing developments regarding the weaponization and mitigation of CVE-2021-44228 in the logging library known as Log4j.