Cybersecurity

Cyber Threat Intelligence, Alerts and Reports

As part of the AHA’s commitment to helping hospitals and health systems prepare for and prevent cyber threats, we have gathered the latest government cyber threat intelligence and alerts and Health Information Sharing and Analysis Center (H-ISAC) reports.

You may be asked to enter your AHA member credentials to view certain reports and intelligence alerts.

Cybersecurity & Risk Advisory

Learn how AHA can help hospitals and health systems prepare for and mitigate cyber threats through the expertise of John Riggi, AHA’s National Advisor for Cybersecurity and Risk.

Learn More

A critical vulnerability has been identified in 7-Zip, a free software program used for archiving data, according to the National Institute of Standards and Technology. The flaw allows cyber actors to write code outside of the intended extraction folder where the user did not intend.
H-ISAC TLP Green: Daily Cyber Headlines for November 21, 2025
U.S. and international agencies Nov. 19 released a guide on mitigating potential cybercrimes from bulletproof hosting providers. A BPH provider is an internet infrastructure provider that intentionally markets and leases their infrastructure to cybercriminals.
This week, Health-ISAC®'s Hacking Healthcare® examines the recent introduction of a United Kingdom (UK) legislative bill that would update its Network and Information Security (NIS) regulations.
H-ISAC TLP Green: Daily Cyber Headlines - November 18, 2025.
A daily ransomware tracker at TLP:GREEN to increase awareness of the ransomware threat.
H-ISAC TLP White: Daily Cyber Headlines for November 16, 2025.
A joint advisory issued yesterday by U.S. and international agencies provides updated guidance to defend against the Akira ransomware group, which has previously conducted cyberattacks against hospitals and health care organizations.
On October 6, 2025, security researchers at Defused reported a path traversal flaw in Fortinet’s FortiWeb web application firewall (WAF) being exploited in-the-wild as a zero-day since October 2025.
H-ISAC TLP White: Daily Cyber Headlines for November 13, 2025.