Skip to main content

Bill Siwicki

Bill Siwicki

Bill Siwicki is Managing Editor of Healthcare IT News. Bill has nearly 40 years of experience in journalism, with more than 25 years experience in healthcare IT.

By Bill Siwicki | 03:47 pm | January 08, 2018
A new report from Aon's security experts predicts more and different cyberattacks, and highlights the pressing need for healthcare organizations to change some of their approaches.
By Bill Siwicki | 03:30 pm | January 05, 2018
This past year was another challenging one for healthcare organizations as they remained under sustained attack by cybercriminals who continue to target healthcare networks through the use of well-known vulnerabilities.  A new study predicts that 2018 won't be any easier, especially as attackers increasingly set their sights on smaller providers and the myriad connected Internet of Things devices across healthcare. In 2017, there were a total of 140 hacking-related data breaches reported to the Department of Health and Human Services' Office of Civil Rights – a 24 percent increase over the 113 such events reported in 2016, according to the "2017 Health Care Cyber Research Report," from cybersecurity vendor Cryptonite. The number of reported hacking events attributed to ransomware by healthcare organizations jumped by 89 percent from 2016 to 2017, the study shows. This was an increase from 19 reported events in 2016 to a total of 36 events in 2017. [Also: Hospitals, don't wait to address these little-known IoT security issues] In 2017, ransomware events represented 25 percent of all events reported to HHS/OCR and attributed to IT/hacking. All six of the largest hacking-related healthcare events reported in 2017 were attributed to ransomware, the study found. Somewhat encouragingly, this past year, just 3,442,748 records were reported to be compromised, a big decrease from 13,425,263 reported compromised in 2016. But in years past, cybercriminals devoted significant time and effort to targeting the largest healthcare organizations. For example, 2015 breach events included Anthem (78.8 million records) and Premera Blue Cross (11 million records), and 2016 events included Banner Health (3.6 million records) and Newkirk Products (3.4 million records). Now this low-hanging fruit has to some extent been harvested, and attackers are increasingly turning their attention to a broader mix of healthcare entities, the report said. "The emergence and refinement of advanced ransomware tools lowers both the cost and the time for cyberattackers to target smaller healthcare institutions – now they can cost effectively reach physician practices, surgical centers, diagnostic laboratories, MRI/CT scan centers, and many other smaller yet critical healthcare institutions," according to Cryptonite. "This is the beginning of a trend that will increase very substantially in 2018 and 2019." Internet of Things devices in healthcare also represent new and expanding opportunities for cyberattackers. IoT devices now are now nearly ubiquitous in healthcare – already widely deployed  in intensive care facilities, operating rooms and patient care networks, said Michael Simon, president and CEO of Cryptonite. "Cyberattackers target healthcare networks for two primary reasons – to steal the medical records they contain or to extort ransom payments," said Simon. "Medical records are the targets of choice, as this data is highly prized to support identity theft and financial fraud. While 2017 was the year of ransomware, we are anticipating this already hard-hit sector will feel the wrath of cybercriminals targeting the hundreds of thousands of IoT devices already deployed in healthcare." .jumbotron{ background-image: url("http://www.healthcareitnews.com/sites/default/files/u1576/securityforjumbotron.jpg"); background-size: cover; color: white; } .jumbotron h2{ color: white; } Future-proofing security Why cybersecurity is top of mind for forward-looking healthcare orgs. Twitter: @SiwickiHealthIT Email the writer: bill.siwicki@himssmedia.com
By Bill Siwicki | 01:22 pm | January 05, 2018
The company wants to help employer groups offer genetic testing to employees through confidential consults with providers and includes a telemedicine option.
By Bill Siwicki | 04:19 pm | January 04, 2018
InTouch Health will incorporate TruClinic's software so patients can initiate and consult with their health system physician from their home.
By Bill Siwicki | 02:26 pm | January 04, 2018
The group says privacy and security, clinical documentation improvement and information governance will demand the attention of health IT and infosec executives in the year ahead.
By Bill Siwicki | 03:04 pm | January 03, 2018
Akiri is developing a networking platform it says will help healthcare organizations more easily share data using blockchain.
By Bill Siwicki | 11:21 am | January 03, 2018
As technology vendors increasing specialize on telepharmacy, rural providers are deploying the tools to offer patients 24/7 pharmacy services.
By Bill Siwicki | 12:56 pm | January 02, 2018
The organization won a HIMSS Indiana Chapter Hackathon, finding where ER visits could have been treated in the primary care setting and offering guidance for all healthcare organizations.
By Bill Siwicki | 10:35 am | December 27, 2017
Cybersecurity has become an extremely complex field and chief information security officers need a specific body of knowledge – and a smart staff to handle the rest.
By Bill Siwicki | 11:32 am | December 26, 2017
Every user has access to applications and resources to do their job and segmentation keeps threats contained.