H-ISAC: White Reports

Health-ISAC and Microsoft have partnered together to deliver a new medium to discuss notable vulnerabilities patched in the recent Patch Tuesday update.
This week, Hacking Healthcare begins by breaking down the Federal Trade Commission’s warning that it may take action against companies that don’t remediate the Log4j vulnerability in a timely manner.
The United States Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), and the National Security Agency
On January 10, 2022, the Health Sector Cybersecurity Coordination Center (HC3) shared a report "December 2021 Vulnerability Bulletin" regarding vulnerabilities impacting information systems relevant to the health sector.
This week, Hacking Healthcare begins by reviewing how an AvosLocker ransomware attack bolsters our understanding of how ransomware gangs operate.
A joint Cybersecurity Advisory (CSA) to provide mitigation guidance on addressing vulnerabilities in Apache’s Log4j software library.
The Health-ISAC Threat Operations Center (TOC) continues to track ongoing developments regarding the weaponization and mitigation of CVE-2021-44228 in the logging library known as Log4j. 
This week, Hacking Healthcare begins by breaking down the issue of cyber incident reporting timelines and makes the case for engagement with regulators and legislators.