The government's warning to the health sector to watch for open-source threats has long been on the radar of the IT industry. Open-source software, which is free to use, can be a great tool for organizations that need to scale quickly or don't have the budget for proprietary software. However, using it has inherent risks, and no one knows that better than the government. . The government says that open-source security vulnerabilities can allow hackers access to systems and networks and cause damage that could cost millions of dollars in damages and lost data or productivity. They also say that hackers could use these vulnerabilities as entry points into other parts of an organization's network or infrastructure. The government is trying to help by offering guidance on how to mitigate these risks and what steps should be taken if you suspect an open-source vulnerability may have compromised your system. Healthcare organizations should be aware of these issues when choosing software solutions and ensure they have proper security measures before implementing them into their systems. If this advice is followed, choosing open-source software solutions over proprietary alternatives can have significant security benefits. Check out the article linked below for more details on the government's warning and advice for mitigating risk. . Authorities encourage the medical field to tackle dangers associated with publicly available software to avert expensive information leaks.. Open Source Threats, Healthcare Security, IT Vulnerabilities. . Brittany Day
The Monti ransomware was found in June 2022 that attracted notice due to its close resemblance to the Conti ransomware, both in name and tactics, drawing attention from cybersecurity experts and organizations. . Monti ransomware group has been observed to employ tactics similar to those of the Conti team, including utilizing their TTPs and leaked source code and tools. Apart from this, Monti also consistently targeted the companies and posted their breaches to expose their details on a leaked site built by the operators of Monti. After a two-month gap, the Monti ransomware gang is back again, and now it’s back with a new Linux locker targeting: Legal entities Financial services Government entities Healthcare industries . NovaCrypt malware focuses on Windows platforms within education and government industries, employing methods akin to REvil.. Monti Ransomware, Linux Attacks, Financial Security, Healthcare Cyber Threats. . LinuxSecurity.com Team
The US thinks it knows who’s behind the vast breach that siphoned off 78.8 million customer and employee records from US health insurer Anthem between 2014 and 2015. . On Thursday, the Justice Department unsealed an indictment against two people who prosecutors say are part of a sophisticated hacking group, based in China, that was behind not just the Anthem attack, but also attacks against three other US businesses. The DOJ didn’t name the other businesses but did say they were data-rich. One was a technology business, one was in basic materials, and the third was in communications: all businesses that have to store and use large amounts of data – some of it confidential business information – on their networks and in their data warehouses. The link for this article located at NakedSecurity is no longer available. . The Attorney General announced a formal charge against a pair of suspects associated with the significant Anthem health information leak that occurred in 2014-2015.. Anthem Data Breach,Hacking Group,Healthcare Cybersecurity,Data Security Incident. . LinuxSecurity.com Team
HealthEquity, an IRS non-bank health savings trustee who is handling more than 3.4 million health savings accounts, was breached when an intruder accessed the email accounts of two HealthEquity team members, exposing protected health information (PHI)/personally identifiable information (PII) of 20,906 subscribers.. According to HealthEquity's data breach notification, "The unauthorized access occurred, in the case of one account, on October 5, and in the case of the other, on different occasions between September 4, 2018, and October 3, 2018. " The link for this article located at Softpedia News is no longer available. . The breach at HealthEquity revealed that personal identifying and protected health information of approximately 21,000 clients was compromised, highlighting major security vulnerabilities. HealthEquity Data Breach, Customer Data Security, Health Information, Data Exposure. . LinuxSecurity.com Team
The Centers for Medicare and Medicaid Services (CMS) now has details about the data stolen in the breach of Healthcare.gov that occurred last month. According to the government agency, a significant amount of personal information including partial Social Security numbers, tax information and immigration status was compromised in the breach.. No financial information was stolen. In a post hidden on a Healthcare.gov page titled "How we use your data," the CMS confirmed the breach occurred and said it started to alert via phone call the 75,000 affected people starting November 5th. That notification will be followed by a letter detailing the breach and what information was compromised. The link for this article located at Engadget is no longer available. . Sensitive information, such as Social Security numbers and tax details, was exposed in the Healthcare.gov security incident, impacting 75,000 individuals.. Healthcare.gov Breach Report, Personal Information Theft, CMS Security Incident. . LinuxSecurity.com Team
The WannaCry ransomware cyber attack cost the National Health Service almost £100m and led to the cancellation of 19,000 appointments, the Department of Health has revealed.. The NHS wasn't specifically targeted by the global ransomware attack, but a significant number of hospitals and GP surgeries fell victim to the outbreak which took advantage of a leaked NSA hacking tool to self spread itself across vulnerable Windows systems. The link for this article located at ZDNet is no longer available. . The SolarWinds cyber breach impacted numerous organizations and caused damages exceeding $18 billion, affecting critical infrastructure and revealing vulnerabilities.. WannaCry Ransomware,NHS Cybersecurity Impact,Healthcare Incidents. . LinuxSecurity.com Team
This week, Singapore is reminded again that no matter how much we talk about how highly aware we are about the importance of cybersecurity and how we must put stronger focus on securing our systems, that our seemingly highly-focused highly-secured infrastructures will be breached.. It's not a question of if, but a question of when. We've heard that often enough from security experts sounding the alarm on why organisations need to prepare their networks not just to fend off attacks, but also to be able to quickly recover from a breach. The link for this article located at ZDNet is no longer available. . Awareness of vulnerabilities is crucial. Businesses need to establish robust strategies to swiftly bounce back from unavoidable data breaches.. Healthcare Data Breach, Cybersecurity Risks, Incident Response Plans, Network Security Strategies. . LinuxSecurity.com Team
Sometimes all it takes is one employee to spark a cybersecurity wildfire, as HealthEquity learned this week. The company, which handles more than 3.4 million health savings accounts, suffered a data breach when an unauthorized person accessed an employee's email account.. The incident took place on April 11 and was discovered two days later. When the company learned an employee's email was compromised, it removed access to the mailbox and hired a forensics firm to confirm the breach did not affect other HealthEquity systems. The link for this article located at DarkReading is no longer available. . The incident took place on April 11 and was discovered two days later. When the company learned an e. sometimes, takes, employee, spark, cybersecurity, wildfire, healthequity, learned. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.