Skip to main content

Threats, defenses, and the practical work of keeping health care organizations secure. Ransomware, phishing, endpoint security, vulnerability management, identity security, MFA, incident response, and breach analysis - with a focus on what health care IT teams can actually do about it.

Your Email Domain Is Public Information, and Attackers Check It Before You Do

The business office manager at a Critical Access Hospital gets an email from the billing coordinator at the CAH forty

White House AI Framework Exempts Open Models. The July Evaluation Leaks Are What Matter for Health Care IT.

On August 4, 2026, White House officials sat down with executives from OpenAI, Anthropic, Google, Meta, Nvidia, Micro

Microsoft Blocks July Windows 11 Update on Some Dell PCs Over Intel Driver Conflict - What Health Care IT Teams Should Do

Microsoft has placed a compatibility hold on its July 2026 cumulative update (KB5101650) for a limited set of Dell PC

KB5094126: Applying June's Critical Windows Patch Without Triggering a BitLocker Lockout

Microsoft's June 2026 Patch Tuesday is the largest on record, and the headline update for Windows 11, KB5094126, is o

Microsoft Defender Zero-Days CVE-2026-41091 and CVE-2026-45498: What Health Care IT Should Verify This Week

Microsoft confirmed on May 20 that two Defender vulnerabilities are being actively exploited in the wild.

Microsoft Disrupts Fox Tempest: What the Malware-Signing Takedown Means for Health Care IT

On May 19, Microsoft's Digital Crimes Unit (DCU) disrupted Fox Tempest, a financially motivated threat actor that for

Microsoft 365 Security on E3, Business Premium, and F3: What Health Care IT Actually Has to Work With

Most health care organizations running

Subscribe to Security