Lexology May 10, 2023
The U.S. Department of Health and Human Services (HHS) continues to play a central role in helping health care organizations defend against cybersecurity threats, issuing cybersecurity briefs and a new cybersecurity framework over the last 60 days.
On April 6, 2023, HHS warned health care organizations of the cybersecurity threat posed to Electronic Medical/Health Records (EMRs/EHRs). This latest threat briefing is one of the first issued to health care organizations under HHS’s new cybersecurity framework (and follows its previous briefing on “Data Exfiltration trends in Healthcare”).
In addition to specific briefings on key cyber risk areas, HHS unveiled a new framework through the agency’s Administration for Strategic Preparedness and Response (ASPR) to assist health care organizations with responding to cyber...