The US Department of Health and Human Services (HHS) has proposed rules to increase cybersecurity protections for electronic health data. The changes extend to HIPAA-regulated entities such as healthcare providers, insurers, and associated businesses, imposing stricter requirements around risk assessments, data encryption, and more. It will eliminate the “required” and “addressable” distinctions in the implementation specifications, making all violations mandatory. The public has until March 7, 2025, to submit comments on the proposal.

North Korean Hackers Use Fake U.S. Companies to Spread Malware in Crypto Industry: Report
North Korean hackers reportedly set up shell companies in the US to penetrate the crypto sector and target developers via fake job offers, according to