HHS

Department of Defense Sets Ground Rules for Hackers

In-brief: The U.S. Department of Defense published guidelines on Monday for independent security researchers to disclose vulnerabilities in DoD’s public facing systems. The program, managed by the firm HackerOne, provides a legal route for hackers to disclose vulnerabilities to the military.

Privacy Forum Pushes Guidance for Wearables, Health Apps

In-brief: new guidance from the Future of Privacy Forum urges connected health device makers to address security and privacy issues to prevent sensitive data from falling into the wrong hands. 

Update: Regulator says Ransomware Infections Likely Reportable Under HIPAA

In-brief: The Department of Health and Human Services issued guidance that declared most ransomware infections to be reportable under the Federal HIPAA patient privacy law.

Report: Feds Mull Bug Bounty Contest for Medical Devices

In-brief: Following the success of the Hack the Pentagon bug bounty program, officials at the U.S. Department of Health and Human Services are considering launching a similar program aimed at medical devices and other healthcare systems. 

Focus on Privacy Hobbles Security at Healthcare Orgs

In-brief: Healthcare organizations are woefully prepared to defend against cyber attacks that could affect patient health due, in part, to a narrow focus on protecting patient health information.