The Cybersecurity and Infrastructure Security Agency (CISA) issued a guide to help the healthcare sector mitigate known cybersecurity vulnerabilities and reduce risk. Top vulnerabilities identified included web application vulnerabilities, encryption weaknesses, and unsupported software. The guide offers tailored recommendations targeting these issues, including maintaining an asset inventory, phishing prevention, altering default passwords and implementing multifactor authentication. The guidance emphasizes “secure by design” principles for healthcare product manufacturers.

Hackers Abuse Cloudflare Tunnel Infrastructure to Deliver Multiple RATs
Cybersecurity experts have uncovered a sophisticated attack exploiting Cloudflare’s tunnel infrastructure to distribute remote access trojans (RATs). Phishing emails with disguised attachments initiate the infection,