The healthcare sector faces evolving cybersecurity challenges as cloud application usage grows and generative AI (genAI) applications become more integrated into organizational workflows. This report examines the latest trends in malware distribution, data policy violations, and genAI application usage within the healthcare industry.
Malware distribution: Cloud applications are increasingly abused for malware distribution, with 13% of healthcare organizations experiencing malware downloads from GitHub. Threat actors leverage trusted platforms like GitHub to distribute malware, ultimately aiming to deploy infostealers and ransomware within healthcare networks.
Data policy violations: Mishandling regulated data is the top data security concern across the board in the healthcare sector, with regulated data being the most common type of sensitive data uploaded to personal cloud apps, genAI apps, and other unapproved destinations.
GenAI usage: 88% of healthcare organizations are using genAI apps directly, with 96% using apps that leverage user data for training and 98% using apps that incorporate genAI features. Organizations are responding to the resulting sensitive data (primarily regulated data) exposure risk by increasing their adoption of DLP.