The National Security Agency, Cybersecurity and Infrastructure Security Agency and FBI yesterday  U.S. critical infrastructure and other organizations to take certain actions to protect their systems from known vulnerabilities that China state-sponsored actors continue to exploit to target intellectual property and sensitive networks. In a separate presentation, the Department of Health and Human Services yesterday  health care organizations that threat actors are increasingly using legitimate network security tools for malicious purposes.

鈥淎s we have seen from previous government warnings and previous cyberattacks, hackers associated with the Chinese government continue to target health care in the United States,鈥 said John Riggi, AHA鈥檚 national advisor for cybersecurity and risk. 鈥淭hese cyber-espionage campaigns aimed at health care often target sensitive medical research, including research on infectious diseases, genomics and medical technology, thereby making academic medical centers a high priority target for these Chinese government hackers. The HHS bulletin advises that hackers targeting health care often use legitimate open-source penetration testing and hacker simulation tools against us. They use these tools to penetrate our networks and expand their presence within the network. Health care organizations are reminded to fully secure and monitor access and activity of these tools to prevent hackers from 鈥榣iving off the land鈥 in our networks.鈥 

For more information on these or other cyber and risk issues, contact Riggi at jriggi@aha.org.

Related News Articles

Headline
The Centers for Medicare & Medicaid Services today announced it has identified a fraud scheme targeting Medicare providers and suppliers. CMS said scammers鈥
Headline
The FBI, Cybersecurity and Infrastructure Security Agency and Australian Cyber Security Centre June 4 released an advisory on updated actions and tactics used鈥
Headline
The National Security Agency, Cybersecurity and Infrastructure Security Agency and international partners May 22 released guidance on securing data used for鈥
Headline
The FBI, along with the National Security Agency and other international cybersecurity agencies, this week released a joint agency advisory on cyber operations鈥
Headline
The FBI's Internet Crime Complaint Center released an alert May 7 warning of cyber actors exploiting vulnerabilities in end-of-life routers. Routers dated 2010鈥
Headline
The FBI鈥檚 Internet Criminal Complaint Center May 15 released an alert warning of a malicious text and voice messaging campaign involving impersonators鈥