25% off all training courses Offer ends May 29, 2026
View HIPAA Courses
25% off all training courses
View HIPAA Courses
Offer ends May 29, 2026

The HIPAA Journal is the leading provider of HIPAA training, news, regulatory updates, and independent compliance advice.

Healthcare Cybersecurity

Healthcare cybersecurity is a growing concern for anyone requiring HIPAA compliance. The last few years have seen hacking and IT security incidents steadily rise and many healthcare organizations have struggled to defend their network perimeter and keep cybercriminals at bay.

The articles in this healthcare cybersecurity section are intended to help HIPAA covered entities decide on the best technologies to protect their networks from attack and develop effective policies, procedures and security awareness training programs to prevent costly data breaches.

CISA Launches Initiative to Improve Critical Infrastructure Resilience During Geopolitical Conflicts

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has announced a new initiative aimed at improving critical infrastructure cyber resilience...

Healthcare Organizations Exposing Patient Data Via Poorly Secured DICOM Servers

Healthcare organizations are exposing a vast amount of patient data by failing to implement even basic security measures for DICOM...

Settlement Resolves FTC Lawsuit Against Kochava Over Sale of Geolocation Data

A settlement has been reached between the Federal Trade Commission (FTC) and the Idaho-based data broker Kochava and its subsidiary...

New Cyber Resilience Readiness Program Developed by Joint Commission; AHA

Healthcare and public health sector Cyber Resilience Readiness Program

Joint Commission and the American Hospital Association (AHA) have partnered to create a new Cyber Resilience Readiness program for hospitals...

Urgent Action Required by MOVEit Automation Users

MOVEit Automation vulnerabilities 2026

Progress Software has issued a warning to customers about a critical authentication bypass vulnerability within the MOVEit Automation application. MOVEit...

World Password Day 2026 – Password Tips and Best Practices

World Password Day 2025

Thursday, May 7, 2026, is World Password Day – an event originally established in 2013 and observed on the first...

News Categories

Notices

Frequency and Severity of Hacks of Medical Devices Increasing

medical device cybersecurity

Healthcare organizations are increasingly concerned about medical device security and for good reason – attacks targeting or impacting medical devices...

AI Analysis Identifies 38 Flaws in OpenEMR Platform

An automated, AI-driven analysis of the most widely used electronic medical records platform uncovered 38 previously unknown vulnerabilities, including two...

Healthcare Organizations Struggling to Implement Primary Method of Blocking Lateral Movement

microsegmentation study healthcare

A study of security leaders from the healthcare and manufacturing industries found that while there is an almost universal desire...

Former FBI Deputy Cyber Chief Calls for Terrorism Classification for Healthcare Ransomware Actors

At a recent joint hearing by the Subcommittee on Border Security and Enforcement and the Subcommittee on Cybersecurity and Infrastructure...

HSCC Issues Guidance for Healthcare Organizations on Managing Third Party AI Risks

The Health Sector Coordinating Council (HSCC) Cybersecurity Working Group has issued a guidance document for healthcare organizations on managing third-party...

2025 Losses to Cybercrime Exceeded $20 Billion

Internet Crime Complaint Report 2025

In 2025, another unwanted record was set for losses to cybercrime, with almost $21 billion in reported losses, beating the...

HIPAA Password Requirements

The HIPAA password requirements are a combination of Administrative and Technical Safeguards designed to manage and monitor access to PHI....

HIPAA Encryption Requirements

The HIPAA encryption requirements have increased in relevance since an amendment to the HITECH Act in 2021 gave HHS’ Office...

New HIPAA Regulations in 2026

New HIPAA regulations may be implemented in 2026, such as the proposed update to the HIPAA Privacy Rule,  a final...

CISA, NSA Release Cloud Security Guides

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the National Security Agency (NSA) have issued five cybersecurity information sheets...

x

Is Your Organization HIPAA Compliant?

Find Out With Our Free HIPAA Compliance Checklist

Get Free Checklist