Cybersecurity

Cyber Threat Intelligence, Alerts and Reports

As part of the AHA’s commitment to helping hospitals and health systems prepare for and prevent cyber threats, we have gathered the latest government cyber threat intelligence and alerts and Health Information Sharing and Analysis Center (H-ISAC) reports.

You may be asked to enter your AHA member credentials to view certain reports and intelligence alerts.

Cybersecurity & Risk Advisory

Learn how AHA can help hospitals and health systems prepare for and mitigate cyber threats through the expertise of John Riggi, AHA’s National Advisor for Cybersecurity and Risk.

Learn More

Microsoft Sept. 16 announced it had disrupted a growing phishing service that had targeted at least 20 U.S. health care organizations and seized 338 websites associated with cyber threat group RaccoonO365.
On September 17, 2025, WatchGuard released a security advisory regarding a critical vulnerability, tracked as CVE-2025-9242.
SonicWall has disclosed a security incident in which threat actors gained unauthorized access to backup firewall preference files stored in its cloud service,
On September 11, 2025, Okta discovered a sophisticated Phishing-as-a-Service framework named VoidProxy. Due to its evasive capabilities and modular design, it has emerged as a significant threat.
H-ISAC TLP Green Daily Cyber Headlines - September 18, 2025
A daily ransomware tracker at TLP:GREEN to increase awareness of the ransomware threat.
Today, the House Committee on Appropriations released the legislative text for a continuing resolution (CR) to fund the government through Nov. 21, 2025.
H-ISAC TLP Green Daily Cyber Headlines for September 16, 2025.
A daily ransomware tracker at TLP:GREEN to increase awareness of the ransomware threat.
The FBI Sept. 12 released an alert warning of malicious activities by cybercriminal groups UNC6040 and UNC6395, which the agency said are responsible for an increasing number of data theft and extortion intrusions.