Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
29
1
3
4
5
7
8
10
11
12
15
16
17
18
19
21
24
25
26
27
30
31
1
2
A Behavioral Health Collision At The EHR Intersection
2014-09-30    
2:00 pm - 3:30 pm
Date/Time Date(s) - 09/30/2014 2:00 pm Hear Why Many Organizations Are Changing EHRs In Order To Remain Competitive In The New Value-Based Health Care Environment [...]
Meaningful Use and The Rise of the Portals
2014-10-02    
12:00 pm - 12:45 pm
Meaningful Use and The Rise of the Portals: Best Practices in Patient Engagement Thu, Oct 2, 2014 10:30 PM - 11:15 PM IST Join Meaningful [...]
Adva Med 2014 The MedTech Conference
2014-10-06    
All Day
Adva Med 2014 The MedTech Conference October 6-8, 2014 McCormick Place Chicago, IL For more information, visit, advamed2014.com For Registration details, click here  
Public Health Measures Meaningful Use
2014-10-09    
12:00 pm - 12:45 pm
Public Health Measures Meaningful Use: Reporting on Public Health Measures Join Meaningful Use expert Jim Tate for a three part series of webinars addressing MU [...]
2014 Hospital & Healthcare I.T. Conference
2014-10-13    
All Day
Join us at our 2014 Hospital & Healthcare I.T. Conference and experience the following: Up to 125 Hospital & Healthcare I.T. executives from America’s most prestigious [...]
Connected Health Care 2014
Key Trends That will be Discussed at the Conference! Connected Healthcare 2014 is set to explore the crucial topics that are revolutionizing the connected health industry: [...]
HealthTech Conference
2014-10-14    
All Day
HealthTech Capital is a group of private investors dedicated to funding and mentoring new "HealthTech" start ups at the intersection of healthcare with the computer [...]
Health Informatics & Technology Conference (HITC-2014)
2014-10-20    
All Day
Information technology has ability to improve the quality, productivity and safety of health care mangement. However, relatively very few health care providers have adopted IT. [...]
HIMSS Amsterdam 2014
2014-10-20    
12:00 am
About HIMSS Amsterdam 2014 This year, the second annual HIMSS Amsterdam event will be taking place on 6-7 November 2014 at the Hotel Okura. The [...]
Patient Portal Functionality and EMR Integration Demonstration
2014-10-22    
2:00 pm - 3:30 pm
This purpose of this webcast is to present a demonstration to show how the Patient Portal integrates with EMR, as well as discuss how this [...]
Connected Health Symposium 2014
Symposium 2014 - Connected Health in Practice: Engaging Patients and Providers Outside of Traditional Care Settings Collaborating with industry visionaries, clinical experts, patient advocates and [...]
CHIME College of Healthcare Information Management Executives
2014-10-28 - 2014-10-31    
All Day
The Premier Event for Healthcare CIOs Hotel Accomodations JW Marriott San Antonio Hill Country 23808 Resort Parkway San Antonio, Texas 78761 Telephone: 210-276-2500 Guest Fax: [...]
The Myth of the Paperless EMR
2014-10-29    
2:00 pm - 3:00 pm
Is Paper Eluding Your Current Technologies; The Myth of the Paperless EMR Please join Intellect Resources as we present Is Paper Eluding Your Current Technologies; The Myth [...]
Events on 2014-09-30
Events on 2014-10-02
Events on 2014-10-06
Events on 2014-10-09
Events on 2014-10-13
Events on 2014-10-14
Connected Health Care 2014
14 Oct 14
San Diego
HealthTech Conference
14 Oct 14
San Mateo
Events on 2014-10-20
HIMSS Amsterdam 2014
20 Oct 14
Amsterdam
Events on 2014-10-23
Events on 2014-10-28
Events on 2014-10-29
Latest News

Apr 15: ‘Heartbleed’ Bug Could Affect Health Care Industry, Experts Warn

ehr replacement

Hospitals’ and providers’ online networks — including email accounts, electronic health records and remote monitoring devices — could be vulnerable to an encryption bug called “Heartbleed,” according to security experts, Modern Healthcare reports (Conn, Modern Healthcare, 4/11).

About the Bug

Last week, a Google engineer and another security team discovered the bug and found that it infiltrates systems through a Web encryption program known as OpenSSL, which is used by hundreds of thousands of websites including Amazon and Google (Finkle, Reuters, 4/10). Experts say that hackers could potentially use the program to get sensitive information from:

  • Email servers;
  • Laptops;
  • Mobile phones; and
  • Security firewalls.

Potential Implications

At this point, it is unclear if the nation’s health care providers are especially vulnerable. For example, CynergisTek CEO Mac McMillan said Web networks that rely on two- or three-factor password authentication should be safe (Wicklund, mHealthNews, 4/11).

However, David Harlow, principal of health care law Harlow Group, warned that health groups that do not rely on OpenSSL should be worried about ramifications of the massive breach. He said, “Heartbleed can set back trust in health IT that has been building as it proliferates, and as the protections under HIPAA/HITECH are baked into the policies and procedures of more and more vendors” (Bowman, FierceHealthIT, 4/11).

Further, security vendor Trend Micro in a blog post on Thursday raised concerns about threats to mobile phone applications, such as health care applications that use individuals’ personal and financial data (Vijayan, ComputerWorld, 4/11).

No Threat to Federal Websites, Officials Say

Meanwhile, officials from the Department of Homeland Security noted that the government’s main public websites were not affected by the bug.

Specifically, CMS on Thursday said the vulnerability did not affect consumer accounts on the federal health insurance exchange or the Medicare website, MyMedicare.gov (Sternstein, NextGov, 4/11).

Comments

McMillan said the issue “is huge … it’s servers, it’s appliances, it’s devices,” adding that the bug has been around for about two years and that experts do not know how many breaches may have already happened.

Although government agencies and private companies are rushing to fix vulnerabilities, breaches may not be detected for a long time, if at all.

“It’s going to be a long, long time before they truly understand the scope of this,” McMillan said.

CloudFlare CEO Matthew Prince called Heartbleed “the worst bug the Internet has ever seen,” adding, “If a week from now we hear criminals spoofed a massive number of accounts of financial institutions, it won’t surprise me” (mHealthNews, 4/11). Source