World Password Day 2026 – Password Tips and Best Practices
Thursday, May 7, 2026, is World Password Day – an event originally established in 2013 and observed on the first Thursday of May each year that has the goal of improving awareness of the importance of creating complex and unique passwords and adopting password best practices to keep sensitive information private and confidential. Passwords were first used to protect accounts against unauthorized access in computing environments in the 1960s. In 1961, researchers at the Massachusetts Institute of Technology (MIT) started using the Compatible Time-Sharing System (CTSS). The system ran on an IBM 709, and users could access the system through a dumb terminal, with passwords used to prevent unauthorized access to users’ personal files. The system is widely believed to be the first to use passwords and was also one of the first to experience a password breach. In the mid-1960s, MIT Ph.D. researcher Allan Scherr needed more than his allotted 4-hour CTSS time to run performance simulations he had designed for the computer system. He discovered a way to print out all passwords stored...
HIPAA Compliance Officer Duties in Small Medical Practices
Article Contents The Compliance Officer oversees the HIPAA compliance program. Maintaining the program includes policies, training, and documentation. Internal audits verify compliance with written policies. Key duties include risk analysis, training, and incident management. Complaint intake provides a clear reporting process. Corrective action plans assign responsibility and deadlines. Regulatory inquiries require organized compliance records. The role stays effective through ongoing education and planning. HIPAA Compliance Officer Role in a Small Practice A HIPAA Compliance Officer in a small medical practice designs, monitors, and maintains the compliance program, coordinates internal audits and corrective action plans, manages the intake of complaints and potential incidents, and serves as the practice’s primary point of contact during a regulatory review. This role differs from the Privacy Officer and Security Officer roles, which focus on specific rule sets, in that the Compliance Officer holds responsibility for the program’s structure and performance as a...
Frequency and Severity of Hacks of Medical Devices Increasing
Healthcare organizations are increasingly concerned about medical device security and for good reason – attacks targeting or impacting medical devices are increasing, and those attacks are negatively impacting patient care. Adoption of AI-enabled and AI-assisted medical devices is increasing, despite serious concerns about the cybersecurity risks associated with the devices, and legacy devices continue to be used past end-of-support, despite those devices containing known and unpatched vulnerabilities. According to a recent survey by RunSafe Security, conducted on 551 healthcare professionals involved in device purchasing decisions in the U.S., UK, and Germany, healthcare organizations are getting better at reducing medical device security risks, although the underlying risks remain significant, and in many cases are increasing in severity and impact. When questioned about medical device cybersecurity, 59% of respondents said they are extremely or very concerned about a cybersecurity incident impacting medical devices, with almost one-quarter reporting that such an attack has...
Ransomware Attack on Good Samaritan Health Center Affects 10,000 Individuals
Data breaches have recently been announced by Good Samaritan Health Center, Wonderland Child & Family Services, and L.A. Care Health Plan. Good Samaritan Health Center Good Samaritan Health Center in Atlanta, Georgia, has notified 10,000 individuals about a February 9, 2026, ransomware attack on one of its internal servers. The attack was identified on February 9, 2026, and the server was isolated to contain the attack. The server was restored from backups on the same day. Good Samaritan Health Center said it has found no evidence to suggest that there has been any misuse of data stored on the server, nor was evidence found of any public disclosure of patient data after the attack; however, Good Samaritan Health Center could not rule out the possibility that data had been accessed or stolen. Data on the server was reviewed, and the files were found to contain names, dates of birth, zip codes, and limited clinical information. Social Security numbers and financial information were not compromised as they were not stored on the server. Good Samaritan Health Center said it has...
American Cybersecurity Professionals Given Jail Terms for BlackCat Ransomware Attacks
Two American cybersecurity professionals who signed up as affiliates for a ransomware group have each been sentenced to four years in prison. The third co-conspirator has yet to be sentenced and will learn his fate on July 9, 2026*. Ryan Goldberg, 40, of Georgia, and Kevin Martin, 36, of Texas, along with co-conspirator Angelo Martino, 41, of Florida, had signed up to work as affiliates of the BlackCat ransomware group between April 2023 and December 2023. Under that arrangement, they received 80% of any ransoms they generated, and paid the remaining 20% share to the BlackCat ransomware group in exchange for access to the ransomware encryptor and supporting infrastructure. Goldberg and Martin worked in cybersecurity and had the necessary skills and experience to secure computer systems against ransomware attacks, yet they chose to use their skills to inflict harm for financial gain. While a four-year jail term is no walk in the park, Goldberg and Martin can consider themselves fortunate, as they, along with co-conspirator Martino, faced up to 20 years in jail. “The court’s...



