A report by the Government Accountability Office (GAO) has criticized the Department of Health and Human Services (HHS) for failing to implement several recommended cybersecurity measures. The GAO found that the HHS had not adequately monitored the healthcare sector’s implementation of ransomware mitigation and failed to track adoption of certain practices. The report also stated that HHS lacks full awareness of the sector’s cybersecurity practices, risking misallocation of resources.
Spies hack Wi-Fi networks in far-off land to launch attack on target next door
GruesomeLarch, an advanced persistent threat group, compromised several account passwords on a web service platform using credential-stuffing attacks. However, two-factor authentication prevented actual account breaches.