H-ISAC TLP White: Daily Cyber Headlines - October 23, 2025

Today’s Headlines:   

Leading Story

  • TP-Link Warns of Critical Command Injection Flaw in Omada Gateways

Data Breaches & Data Leaks 

  • Oregon Eye Care Provider and New York Children’s Center Announce Data Breaches
  • Major Patient Data Exposure at Vidal Health Insurance TPA 

Cyber Crimes & Incidents

  • Chinese Threat Actors Using ToolShell Vulnerability to Compromise Networks of Government Agencies
  • Qilin Ransomware Attack Hits Northern Light Technologies and ATR

Vulnerabilities & Exploits  

  • Multiple GitLab Security Vulnerabilities Let Attacker Trigger DoS Condition

Trends & Reports

  • Half of 2025 Ransomware Strikes Target Key Sectors Worldwide: Manufacturing, Health, and Energy

Privacy, Legal & Regulatory

  • China Accuses U.S. of Cyberattack on National Time Center

Upcoming Health-ISAC Events

  • Global Monthly Threat Brief   
    • Americas - October 28, 2025, 12:00-01:00 PM ET
    • European – October 29, 2025, 03:00-04:00 PM CET
    • Fall Americas Summit – Carlsbad, California – December 1-5, 2025

For help with Cybersecurity and Risk Advisory Services exclusively for AHA members, contact:

John Riggi

National Advisor for Cybersecurity and Risk, AHA

jriggi@aha.org

(O) +1 202 626 2272