Risk
1/24/2012
03:49 PM
Connect Directly
RSS
E-Mail
50%
50%

7 Tools To Tighten Healthcare Data Security

Most of the largest healthcare data security and privacy breaches have involved lost or stolen mobile computing devices. Consider these tools and tips for protecting patient data and managing breaches.
Previous
6 of 7
Next


ForeScout CounterACT offers healthcare IT organizations an automated means to gain real-time visibility and control over all users and devices accessing network resources and sensitive information.

Leveraging a providers' existing infrastructure, the ForeScout CounterACT appliance can identify, assess, and apply appropriate network access controls according to built-in policies based on user, device, system, and application attributes without requiring software running on the endpoint device, including devices such as patient monitoring systems.

From a single console, operators can monitor and report on all network resource access. The product also integrates guest networking, mobile security, and endpoint security capabilities.

Miami Children's Hospital, Nationwide Children's Hospital, and Lehigh Valley Hospital and Health Network are among customers using ForeScout CounterAct.

Recommended Reading

Patient Data Losses Jump 32%

How Secure Are Your Clinicians' Mobile Devices?

80% Of Doctors Use Mobile Devices At Work

Healthcare CIOs Juggle More Mobile Challenges

Docs Warm Up to EHRs, Patients Want Paper

Stanford Hospital Breach Exposes 20,000 ER Records

App Allows Radiology Diagnosis Via Tablet, Smartphone

Why Can't Patients See Their EHR Data?

Docs Have iPad Fever: Is There A Cure?

9 Mobile Health Apps Worth A Closer Look

Previous
6 of 7
Next
Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2012-1556
Published: 2014-09-12
Cross-site scripting (XSS) vulnerability in Synology Photo Station 5 for DiskStation Manager (DSM) 3.2-1955 allows remote attackers to inject arbitrary web script or HTML via the name parameter to photo/photo_one.php.

CVE-2014-2008
Published: 2014-09-12
SQL injection vulnerability in confirm.php in the mPAY24 payment module before 1.6 for PrestaShop allows remote attackers to execute arbitrary SQL commands via the TID parameter.

CVE-2014-2009
Published: 2014-09-12
The mPAY24 payment module before 1.6 for PrestaShop allows remote attackers to obtain credentials, the installation path, and other sensitive information via a direct request to api/curllog.log.

CVE-2014-4735
Published: 2014-09-12
Cross-site scripting (XSS) vulnerability in MyWebSQL 3.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the table parameter to index.php.

CVE-2014-5259
Published: 2014-09-12
Cross-site scripting (XSS) vulnerability in cattranslate.php in the CatTranslate JQuery plugin in BlackCat CMS 1.0.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the msg parameter.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
CISO Insider: An Interview with James Christiansen, Vice President, Information Risk Management, Office of the CISO, Accuvant