Wednesday, March 30, 2016

OCR launches cyber-security initiative



BBB scam map plots locations of online scams
PARCA eNews – Feb. 3, 2016 – The Office for Civil Rights, in the Department of Health and Human Services has announced its Cyber-security Initiative to improve cyber awareness of the latest security threats to healthcare data security, according to HIPAA Journal.

OCR kicked off the initiative with advice on two growing security threats: Ransom ware and tech support scams, both of which have increased in prevalence over the past 12 months.


OCR recommends:
  •         Performing regular backups of data onto segmented networks or external devices and making sure backups are current to ensure that critical data can be restored.
  •          Exploit kits that take advantage of zero-day security vulnerabilities in web browsers. Installing patches promptly is essential to keep anti-virus and anti-malware definitions continuously up-to-date.
  •         Increase employee awareness of malvertising, which poses a considerable risk as the ads appear to be legitimate. Such advertising has been found on large trusted websites, such as Yahoo and AOL. To reduce risk, popup blockers and ad-blocking software should be used.
  •         Ensure that staff is aware that threats are not all online, telephone and email scammers use a variety of pitches including “tech support scams” aimed at convincing users to download software or visit malware sites.
  •         HIPAA covered-entities are advised to use a new tool supplied by the Better Business Bureau (BBB), which will help to keep them abreast of the latest social engineering and phishing scams. The tool can be accessed with this link.

No comments:

Post a Comment

Followers