logo

Enhancing Cyber Resilience: Insights from the CISA Healthcare and Public Health Sector Risk and Vulnerability Assessment

ID: c6744c4d-5fcf-5d32-bc56-36bf51f823c6

STIX ID: report--c6744c4d-5fcf-5d32-bc56-36bf51f823c6

Feed Name: CISA Cybersecurity Advisories

Threat Score
75/100

Date Published: 2023-12-13

Date Updated: 2026-04-19

Author: CISA

...
...

**Executive summary:** CISA conducted a two-week Risk and Vulnerability Assessment of a large on-premises HPH organization; while external testing and phishing did not yield initial access, internal testing exploited weak credential hygiene, default credentials, misconfigured ADCS templates, disabled SMB signing, and an EternalBlue-vulnerable server to achieve domain compromise across multiple attack paths, leading to discovery of high-severity issues and recommended mitigations aligned to MITRE ATT&CK and CISA/NIST guidance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.