// 01Executive summary

The healthcare sector faces persistent and widespread data-theft crimes and ransomware attacks, with a significant increase in breaches reported daily. Recent major incidents like MOVEit in 2023 and Change Healthcare in 2024 highlight critical vulnerabilities and the urgent need for enhanced defenses. Organizations must immediately assess their exposure to common attack vectors and implement robust cybersecurity frameworks, such as zero trust, to safeguard patient data. Proactive measures are essential to strengthen breach preparedness, prevention, and response capabilities against these ongoing threats.

// 02Key metrics

// ttps
2
ATT&CK techniques
// iocs
31
indicators
// actors
0
threat groups
// kwords
10
keywords

// 03MITRE ATT&CK

// 04Threat actors

// no actors matched

// 05Indicators of compromise

// ips0

none

// domains28

  • hbr.org
  • www.weforum.org
  • www.okta.com
  • www.hhs.gov
  • index.html
  • ocrportal.hhs.gov
  • www.kff.org
  • www.modernhealthcare.com
  • www.cybersecuritydive.com
  • www.aha.org
  • www.chiefhealthcareexecutive.com
  • www.changehealthcare.com
  • hipaa-substitute-notice.html
  • www.hopkinsmedicine.org
  • www.healthcarefinancenews.com
  • energycommerce.house.gov
  • congress.gov
  • crsreports.congress.gov
  • www.bankinfosecurity.com
  • journal.ahima.org
  • www.beckershospitalreview.com
  • russian-hackers-targeting-healthcare.html
  • doi.org
  • www.reflectiz.com
  • www.fiercehealthcare.com
  • hitconsultant.net
  • www.insideprivacy.com
  • www.ftc.gov

// urls3

  • https://www.ecfr.gov/current/title-45/subtitle-A/subchapter-C/part-
  • https://www.hipaajournal.com/us-russia-action-healthcare-ransomware-attacks/
  • https://www.leechtishman.com/insights/blog/hacking-and-healing-nation-states-cyber-attacks-and-healthcare-law/

// sha2560

none

// md50

none

// emails0

none

// cves0

none

// 07YARA rule

// Failed to generate YARA rule

// 08Keywords

{'keyword': 'breach', 'score': 28.353} {'keyword': 'health', 'score': 26.176} {'keyword': '2024', 'score': 21.0764} {'keyword': 'healthcare', 'score': 19.8004} {'keyword': 'information', 'score': 17.6824} {'keyword': 'data', 'score': 17.3669} {'keyword': 'hipaa', 'score': 17.2955} {'keyword': 'records', 'score': 15.9721} {'keyword': 'breaches', 'score': 15.835} {'keyword': 'care', 'score': 15.5764}

// 09Attack chain

// 10Technical mitigations

// 12Export

// format: // sign in to export ./sign_in