25% off all training courses Offer ends June 26, 2026
View HIPAA Courses
25% off all training courses
View HIPAA Courses
Offer ends June 26, 2026

The HIPAA Journal is the leading provider of HIPAA training, news, regulatory updates, and independent compliance advice.

Healthcare Cybersecurity

Healthcare cybersecurity is a growing concern for anyone requiring HIPAA compliance. The last few years have seen hacking and IT security incidents steadily rise and many healthcare organizations have struggled to defend their network perimeter and keep cybercriminals at bay.

The articles in this healthcare cybersecurity section are intended to help HIPAA covered entities decide on the best technologies to protect their networks from attack and develop effective policies, procedures and security awareness training programs to prevent costly data breaches.

CISA Instructs Federal Agencies to Adopt Risk-Based Approach for Vulnerability Remediation

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a Binding Operational Directive (BOD  26-04) establishing new deadlines for vulnerability...

Check Point VPN and Google Chrome Vulnerabilities Under Active Exploitation

Patches have been issued to fix a critical vulnerability affecting Check Point Mobile Access, SSL VPN, Remote Access VPN, and...

Senator Seeks Answers from NYC Health & Hospitals About 1.8M Record Breach

The Senate Health, Education, Labor, and Pensions (HELP) Committee Chair Senator Bill Cassidy, M.D. (R-LA), is seeking answers from NYC...

HSCC Issues Guidance on Cyber Governance Frameworks for Secure AI Implementation

The Health Sector Coordinating Council (HSCC) AI cybersecurity governance task force has published new guidance for healthcare CISOs and other...

Healthcare Orgs Lack Confidence in Ability to Defend Against an AI-incited Identity Breach

Healthcare organizations have embraced AI and are using AI agents to perform a range of functions, including handling IT support...

Extortion Group Conducts Social Engineering Campaign Impersonating IT Support Staff

Silent Ransom Group, a data theft and extortion group that targets law firms, healthcare organizations, and insurance and finance companies,...

News Categories

Notices

Verizon: Healthcare Sector Facing Sustained, Multi-vector Attacks

Verizon has published its 2026 Data Breach Investigations Report, which shows that the healthcare sector continues to be targeted by...

Rhode Island Finalizes $12 Million Settlement With Deloitte Consulting Over RIBridges Cyberattack

An agreement has been reached between the state of Rhode Island and Deloitte Consulting LLP that will see the professional...

CISA Launches Initiative to Improve Critical Infrastructure Resilience During Geopolitical Conflicts

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has announced a new initiative aimed at improving critical infrastructure cyber resilience...

Healthcare Organizations Exposing Patient Data Via Poorly Secured DICOM Servers

Healthcare organizations are exposing a vast amount of patient data by failing to implement even basic security measures for DICOM...

Settlement Resolves FTC Lawsuit Against Kochava Over Sale of Geolocation Data

A settlement has been reached between the Federal Trade Commission (FTC) and the Idaho-based data broker Kochava and its subsidiary...

New Cyber Resilience Readiness Program Developed by Joint Commission; AHA

Healthcare and public health sector Cyber Resilience Readiness Program

Joint Commission and the American Hospital Association (AHA) have partnered to create a new Cyber Resilience Readiness program for hospitals...

HIPAA Password Requirements

The HIPAA password requirements are a combination of Administrative and Technical Safeguards designed to manage and monitor access to PHI....

HIPAA Encryption Requirements

The HIPAA encryption requirements have increased in relevance since an amendment to the HITECH Act in 2021 gave HHS’ Office...

New HIPAA Regulations in 2026

New HIPAA regulations may be implemented in 2026, such as the proposed update to the HIPAA Privacy Rule, a final...

CISA, NSA Release Cloud Security Guides

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the National Security Agency (NSA) have issued five cybersecurity information sheets...

x

Is Your Organization HIPAA Compliant?

Find Out With Our Free HIPAA Compliance Checklist

Get Free Checklist