Cybersecurity

Cyber Threat Intelligence, Alerts and Reports

As part of the AHA’s commitment to helping hospitals and health systems prepare for and prevent cyber threats, we have gathered the latest government cyber threat intelligence and alerts and Health Information Sharing and Analysis Center (H-ISAC) reports.

You may be asked to enter your AHA member credentials to view certain reports and intelligence alerts.

Cybersecurity & Risk Advisory

Learn how AHA can help hospitals and health systems prepare for and mitigate cyber threats through the expertise of John Riggi, AHA’s National Advisor for Cybersecurity and Risk.

Learn More

The cybersecurity authorities of the United States, Australia, Canada, New Zealand, and the United Kingdom are releasing this joint Cybersecurity Advisory (CSA).
Over the past few years every leader of health care organization in the country has had to acknowledge the threat of a cyberattack that has the potential to compromise systems and patient safety.
As of March 2022, BlackCat/ALPHV ransomware as a service (RaaS) had compromised at least 60 entities worldwide and is the first ransomware group to do so successfully using RUST, considered to be a more secure programming language that offers improved performance and reliable concurrent processing.
H-ISAC TLP Green Daily Cyber Headlines - April 26, 2022.
Health-ISAC is issuing a vulnerability bulletin regarding a critical severity security flaw impacting the open-source technology provider platform, WSO2, tracked as CVE-2022-29464 (CVSS Score 9.8).
A daily ransomware tracker as TLP:GREEN for purposes of increasing ransomware threat awareness.
H-ISAC TLP Green Daily Cyber Headlines - April 25, 2022
The FBI this week released a report detailing indicators of compromise associated with ransomware variants that have compromised at least 60 entities worldwide.
The Federal Bureau of Investigation (FBI) has released a Flash report detailing indicators of compromise (IOCs) associated with attacks involving BlackCat/ALPHV, a Ransomware-as-a-Service that has compromised at least 60 entities worldwide.