Healthcare Cyberattacks Grew in 2022. How Should the Industry Combat Them?

Concerning data from cybersecurity firm Check Point indicates an increase in cyberattacks on healthcare organizations by 74% in 2022 from the previous year.

Healthcare is currently the third most attacked global industry (1,463 attacks per week) behind government/military (1,661 attacks per week) and education/research (2,314 attacks per week.) And in the United States, Healthcare ranks second in weekly attacks.

For example, with the growth of AI-driven technology, researchers and other security professionals worry hackers may use tools like ChatGPT to create phishing emails and launch other sophisticated cyberattacks.

One piece of potential good news for those working to protect healthcare institutions from cyberattacks is the recent passage of the bi-partisan PATCH Act, introduced by U.S. Senators Bill Cassidy, M.D. (R-LA) and Tammy Baldwin (D-WI) to provide much-needed security and safety measure for healthcare system’s cyber infrastructure. The PATCH Act effort was successfully included in the December 2022 Omnibus Appropriations bill – and is now law of the land.

An expert in cybersecurity and VP of Cyber Safety Strategy for Claroty, Joshua Corman, weighed in on the rise of cyberattacks in healthcare and the efforts to combat them.

Joshua’s Thoughts

“For me, the passage of the PATCH Act has been at least a nine-year journey trying to argue that connected medical technologies need minimum cyber hygiene, just like cars needed seat belts and safety features. So it’s been building trust with the US Food and Drug Administration, helping inform their pre- and post-market guidance, but not backed by statute. There was a 2015 congressional task force for healthcare industry cybersecurity I served on, and ultimately during the pandemic under record-high ransomware attacks as well, we saw that disruption to healthcare tech from accidents and adversaries can precipitate loss of life. This was overdue and now we have it backed by law.

How can it help hospitals? Hospitals have a shared responsibility, both with how defensible and resilient the technology we procure and deploy is, to begin with, so our supply chain of medical devices and medical technologies, plus how well we secure them. Any hospital regardless of size or funding will now benefit from at least minimum cyber hygiene for the devices we procure and deploy, so we have a fighting chance of keeping them free from accidents and adversaries.

And why now? I think I would’ve preferred this nine years ago, but there has been growing recognition that we were prone, we were prey, and we just lacked predator interest. Over the last three years with record-high attacks on healthcare from ransomware and brazen criminal actors, degraded and delayed care affects patient outcomes and even mortality rates, and these protracted ransom attacks have been documented in part by my team at CISA to introduce delays sufficient to lead to loss of life. Congress has taken notice. The White House has taken notice, and there is finally political will to step up here and preserve the trust of the public in this technology.”

Follow us on social media for the latest updates in B2B!

Image

Latest

cities
Craftsmanship and the Soul of Cities with Top Real Estate Developer Mike Ablon
February 2, 2026

More than half the world already lives in cities—and the UN projects that share will rise to 68% by 2050, adding roughly 2.5 billion more people to urban areas. At the same time, the “experience economy” has reshaped what people value in places: not just what a city has, but how it feels to…

Read More
client engagement
When Client Engagement Becomes True Partnership
February 1, 2026

CG Infinity’s Salesforce Practice is built on deep, day-to-day engagement with the organizations it serves. Rather than operating as an external vendor, the team embeds itself with clients—working closely, consistently, and collaboratively—so decisions are informed by real context, trust, and shared accountability. This approach ensures Salesforce solutions are shaped not just by requirements, but by…

Read More
CG Infinity
How CG Infinity Brings Cross-Functional Teams Together to Deliver High-Impact Outcomes
February 1, 2026

CG Infinity’s Salesforce Practice is built around helping organizations move forward together, especially when initiatives span multiple teams with different priorities. The focus is on alignment—bringing the right stakeholders into the conversation early and ensuring decisions are made collaboratively so solutions serve the whole organization, not just one function. That capability is reflected in a…

Read More
Salesforce
When Building Beats Buying: A Smarter Approach to Salesforce Decisions at CG Infinity
February 1, 2026

Salesforce offers a broad ecosystem of tools and integrations, giving organizations flexibility but also introducing constant decisions about when to buy, build, or customize. The strongest strategies apply discipline to those choices, ensuring specific requirements are met without adding unnecessary cost or complexity. That balance is a hallmark of how Mike Reeves, Vice President…

Read More