Healthcare Cyberattacks Grew in 2022. How Should the Industry Combat Them?

Concerning data from cybersecurity firm Check Point indicates an increase in cyberattacks on healthcare organizations by 74% in 2022 from the previous year.

Healthcare is currently the third most attacked global industry (1,463 attacks per week) behind government/military (1,661 attacks per week) and education/research (2,314 attacks per week.) And in the United States, Healthcare ranks second in weekly attacks.

For example, with the growth of AI-driven technology, researchers and other security professionals worry hackers may use tools like ChatGPT to create phishing emails and launch other sophisticated cyberattacks.

One piece of potential good news for those working to protect healthcare institutions from cyberattacks is the recent passage of the bi-partisan PATCH Act, introduced by U.S. Senators Bill Cassidy, M.D. (R-LA) and Tammy Baldwin (D-WI) to provide much-needed security and safety measure for healthcare system’s cyber infrastructure. The PATCH Act effort was successfully included in the December 2022 Omnibus Appropriations bill – and is now law of the land.

An expert in cybersecurity and VP of Cyber Safety Strategy for Claroty, Joshua Corman, weighed in on the rise of cyberattacks in healthcare and the efforts to combat them.

Joshua’s Thoughts

“For me, the passage of the PATCH Act has been at least a nine-year journey trying to argue that connected medical technologies need minimum cyber hygiene, just like cars needed seat belts and safety features. So it’s been building trust with the US Food and Drug Administration, helping inform their pre- and post-market guidance, but not backed by statute. There was a 2015 congressional task force for healthcare industry cybersecurity I served on, and ultimately during the pandemic under record-high ransomware attacks as well, we saw that disruption to healthcare tech from accidents and adversaries can precipitate loss of life. This was overdue and now we have it backed by law.

How can it help hospitals? Hospitals have a shared responsibility, both with how defensible and resilient the technology we procure and deploy is, to begin with, so our supply chain of medical devices and medical technologies, plus how well we secure them. Any hospital regardless of size or funding will now benefit from at least minimum cyber hygiene for the devices we procure and deploy, so we have a fighting chance of keeping them free from accidents and adversaries.

And why now? I think I would’ve preferred this nine years ago, but there has been growing recognition that we were prone, we were prey, and we just lacked predator interest. Over the last three years with record-high attacks on healthcare from ransomware and brazen criminal actors, degraded and delayed care affects patient outcomes and even mortality rates, and these protracted ransom attacks have been documented in part by my team at CISA to introduce delays sufficient to lead to loss of life. Congress has taken notice. The White House has taken notice, and there is finally political will to step up here and preserve the trust of the public in this technology.”

Follow us on social media for the latest updates in B2B!

Image

Latest

medicine
The Art of Recovery: Where Music and Medicine Meet in Patient Care
May 14, 2026

Healthcare today can feel overwhelming—not just for patients, but for the teams caring for them. After a major illness or injury, recovery isn’t handled by one doctor alone; it often involves a whole network of specialists, from physical therapists to nurses to social workers, all trying to help someone regain their independence and quality…

Read More
infant health
From Monitoring to Knowing: How Owlet Is Redefining Infant Health at Retail
May 14, 2026

Baby monitors have long promised parents the ability to see and hear their child from another room. But as connected health devices become more normalized in everyday life, from smartwatches to sleep trackers, parents are beginning to expect more than visibility. They want insight. For Owlet, that shift matters because its wearable monitors track…

Read More
SPD
Unlocking CensisAI²: The Metrics That Matter for Smarter SPD Decisions
May 13, 2026

Sterile processing departments are swimming in data, from workflow automation and supply data to patient outcome and quality metrics. But the real challenge is not collecting more information; it is knowing which metrics actually improve SPD performance, technician education, OR readiness and patient safety. For Censis, a leader in surgical asset management, the focus…

Read More
User-generated content
The New Rules of Discoverability: How User-Generated Content Is Reshaping Search, Trust, and Brand Visibility
May 12, 2026

User-generated content (UGC) is moving from marketing side dish to main course as large language models change how people discover brands, products, creators, and ideas. Customer reviews, forum posts, videos, and community conversations increasingly carry more influence than polished brand copy because they feel more specific, lived-in, and trustworthy. As AI systems learn from…

Read More