Healthcare groups in the US believe insurers and third-party vendors should be included in cybersecurity reporting proposals. The proposed rule, released by the Cybersecurity and Infrastructure Security Agency (CISA), does not specifically cover insurers, health IT providers and diagnostic services, something industry groups and the American Hospital Association (AHA) oppose. They argue that an attack on one company could have widespread implications for the sector. Some groups have called for greater flexibility on reporting times due to the potential need for resources elsewhere in a crisis.

New infosec products of the week: October 24, 2025
Here’s a look at the most interesting products from the past week, featuring releases from Axoflow, Elastic, Illumio, Keycard, Netscout and Rubrik. Axoflow Security Data

