Close
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Subscribe
Logo
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Subscribe
    Home Latest News
    • Small Business

    Health Care IT Security Challenged by Phishing Attacks

    Written by

    Nathan Eddy
    Published October 14, 2016
    Share
    Facebook
    Twitter
    Linkedin

      eWEEK content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More.

      The heath care community is facing a serious crisis when it comes to dealing with cyber-security issues, according to an UpGuard report covering more than 500 health care companies.

      The results, part of a larger report to be released at the end of the year that audits more than 7,000 companies across other key sectors, uses UpGuard’s CSTAR score, a single measure of a company’s cyber-security risk indexed on a 0-950 scale, to evaluate health care companies across various sectors, from health insurers to pharmaceutical companies to hospitals.

      Companies across all industries in the health care sector posted low CSTAR scores—under 500—placing all in the warning range of scores.

      With an overall average score of 420—rather abysmal on a scale of 0-950—these poor scores show the extent of the vulnerabilities in this sector.

      “Because the operators of information systems cannot trust the state of their machines, they inevitably experience outages and data breaches,” the report noted. “Because insurers cannot trust the assessment of those systems and the application of existing laws to cyber-assets, they cannot price cyber-insurance policies with sufficiently high limits.”

      In particular, phishing, which involves the sending of malicious emails that appear to come from a legitimate source, is a common tactic used by hackers to steal data.

      While there are free and easy-to-use mechanisms available that combat phishing by checking the validity of emails before they reach a human target, including Sender Policy Framework (SPF) and Domain-Based Message Authentication, Reporting & Conformance (DMARC), the CSTAR report found that more than one-third (35 percent) of companies still do not have SPF records established and only 7 percent have implemented DMARC.

      The data indicates that while the companies with the most income are the best protected in terms of cyber-security, there is a dip in scores in the middle that rises again for those with the lowest income.

      The report noted this soft spot may indicate an explanation for the widespread targeting of mid-sized hospitals by hackers in the past year.

      In 2015 alone, 113 million medical records were compromised—the massive Anthem breach made up about 80 percent of those—and it’s estimated that breaches in this sector could be costing the health care industry as much as $6.2 billion, according to a recent Ponemon report.

      The UpGuard report shows that while most CSTAR ratings across the states are in a gradually ascending middle ground between 350-450, there are significant outliers.

      At either end of the spectrum, two states stand out: Utah and Maine score high at 597 and 613 respectively, while New Mexico and Delaware score 209 and 224. Delaware, the home of incorporation, is particularly worrying.

      Nathan Eddy
      Nathan Eddy
      A graduate of Northwestern University's Medill School of Journalism, Nathan was perviously the editor of gaming industry newsletter FierceGameBiz and has written for various consumer and tech publications including Popular Mechanics, Popular Science, CRN, and The Times of London. Currently based in Berlin, he released his first documentary film, The Absent Column, in 2013.

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      MOST POPULAR ARTICLES

      Artificial Intelligence

      9 Best AI 3D Generators You Need...

      Sam Rinko - June 25, 2024 0
      AI 3D Generators are powerful tools for many different industries. Discover the best AI 3D Generators, and learn which is best for your specific use case.
      Read more
      Cloud

      RingCentral Expands Its Collaboration Platform

      Zeus Kerravala - November 22, 2023 0
      RingCentral adds AI-enabled contact center and hybrid event products to its suite of collaboration services.
      Read more
      Artificial Intelligence

      8 Best AI Data Analytics Software &...

      Aminu Abdullahi - January 18, 2024 0
      Learn the top AI data analytics software to use. Compare AI data analytics solutions & features to make the best choice for your business.
      Read more
      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Video

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2024 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.

      ×