Paubox
Paubox Weekly Fully Automated - A HIPAA compliant email security Podcast
Fully Automated is your weekly rundown of the biggest healthcare cybersecurity stories, delivered in a conversational format by Alex and Jen, two AI hosts who break down breaches, vulnerabilities, and compliance news with clarity, a little dark humor, and always a practical takeaway. Perfect for healthcare IT leaders, administrators, and compliance officers who want to stay informed without wading through the noise.
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Attackers abuse Microsoft 365 Groups to create phishing invitations 10.07.2026 4:00
This episode examines three emerging cybersecurity threats affecting healthcare organizations: Microsoft 365 Groups being exploited for calendar-based phishing attacks, newly discovered vulnerabilities in the widely used DICOM Toolkit that could impact medical imaging systems, and a data breach that originated through social engineering targeting third-party applications. The hosts provide actiona...
More ways to sign in securely with multi-factor authentication 03.07.2026 3:52
In this episode, Jen and Alex discuss Paubox's new MFA options, the ShinyHunters breach involving legacy Iora Health data, World Cup-related phishing scams, and a Senate bill addressing cybersecurity risks in Chinese-made medical devices. The hosts emphasize the importance of addressing legacy systems, conducting thorough asset inventories, and implementing foundational security controls to p...
Attackers impersonate ChatGPT, Claude, and DeepSeek to deliver malware 26.06.2026 4:25
In this episode, we cover emerging threats targeting healthcare and enterprise organizations, including AI platform impersonation scams, the ShinyHunters attacks on Oracle PeopleSoft systems, and research showing AI email agents are vulnerable to phishing. We also discuss Paubox joining LegitScript's Compliance Collective and the Novo Nordisk clinical trial data breach investigation. Key take...
Conditional logic comes to Paubox Forms 19.06.2026 4:28
In this episode, we discuss Paubox Forms' new conditional logic feature, the Conduent breach affecting 62 million people, and critical findings from controlled tests revealing Amazon SES may transmit PHI in plaintext despite documentation claims. We also cover recent ransomware incidents at Mt. Baker, Northwest Radiologists, and Singing River Health System, along with key takeaways from the J...
IBJI agrees to $4 million settlement after breach 12.06.2026 4:50
This episode examines recent healthcare data breaches and settlements, including the $4 million IBJI case involving extended attacker dwell time, Mission Community Hospital's $1.5 million RansomHouse extortion settlement, and third-party vendor risks exposed by the La Perouse billing breach. We also discuss Rutgers University research showing hospitals using third-party tracking pixels are 46...
Paubox Forms now includes a library of pre-built templates 05.06.2026 4:17
In this episode, Alex and Jen discuss new Paubox product updates including a Forms template library and API dashboard improvements, then analyze recent healthcare data breaches affecting Esse Health, Gandara Mental Health Center, and NYC Health + Hospitals. The conversation highlights common security gaps, the growing risk of third-party vendor breaches, and practical steps organizations can take...
Paubox CLI adds forms support: HIPAA compliant email and data collection in one tool 29.05.2026 4:29
This episode covers the new Paubox CLI support for Forms, the LockBit 5.0 ransomware attack on Mt. Spokane Pediatrics affecting over 32,000 patients, a CISA-flagged vulnerability in medical imaging software, and the FBI warning about the Kali365 phishing-as-a-service platform targeting Microsoft 365 credentials. The hosts discuss the security gaps facing small clinics and emphasize actionable step...
Send HIPAA compliant email from the terminal, or your agent 22.05.2026 3:52
In this episode, Jen and Alex break down the surge in QR code phishing attacks, the cautionary tale of a ransomware negotiator who defrauded healthcare clients, and practical strategies for reducing security friction. They also cover new tools for HIPAA-compliant email automation and self-service archive exports that streamline compliance workflows.
SAG-AFTRA Health Plan settles phishing breach class action for $950,000 15.05.2026 4:39
In this episode, we break down the SAG-AFTRA Health Plan's $950,000 phishing settlement, Medtronic's nine-million-record breach, and the Inc Ransom attack on Sandhills Medical Foundation. We also highlight Henderson Behavioral Health's patient-centered approach and discuss practical takeaways for strengthening your organization's security posture through staff training, system...
Microsoft warns of a phishing campaign bypassing MFA protections 08.05.2026 4:23
In this episode, we examine a Microsoft-flagged phishing campaign that bypassed MFA across 13,000 organizations, analyze Saint Anthony Hospital's breach notification that expanded from 6,500 to 146,000 affected individuals, and discuss the ransomware attack impacting 92,000 patients at a Puerto Rico community hospital. Key takeaways include the importance of layered email security, thorough i...
FBI names healthcare the most targeted sector for ransomware 01.05.2026 4:33
In this episode, we break down the FBI's latest Internet Crime Report naming healthcare as the top ransomware target, OCR's four new HIPAA settlements totaling over $1 million, and the Medtronic data extortion incident affecting millions of records. We also examine findings from Paubox's Healthcare Email Security Maturity Index, which reveals critical gaps in AI-based defenses despi...
OrthopedicsNY faces $1.95M penalty after INC Ransom attack 24.04.2026 4:54
In this episode, we break down recent healthcare cybersecurity incidents including a $1.45 million class action settlement stemming from missing MFA and unencrypted data, a repeat ransomware attack on a small cardiology practice, and how attackers are bypassing traditional email authentication. We also discuss the emerging threat of AI-assisted cyberattacks and actionable steps organizations can t...
Brockton Hospital hit by cyberattack, incident disrupts patient care 17.04.2026 4:21
This episode examines recent ransomware attacks affecting Brockton Hospital, Stockton Cardiology, and Rocky Mountain Care, alongside a Dutch supply chain breach impacting eleven hospitals. The hosts discuss the EvilTokens phishing kit that bypasses MFA through Microsoft 365 device code flow exploitation, and share practical defenses including conditional access policies, improved logging, and inci...
Da Vinci robot maker Intuitive Surgical reports phishing breach 10.04.2026 4:23
This episode examines recent cybersecurity incidents affecting healthcare organizations, including breaches at Intuitive Surgical, Nacogdoches Memorial Hospital, and Innovative Pharmacy Packaging Corp, alongside a sophisticated job scam targeting professionals. Key takeaways include the critical importance of phishing training, network monitoring, vendor risk assessments, and reducing detection dw...
Microsoft Teams phishing campaign deploys A0Backdoor malware 03.04.2026 3:53
In this episode, Alex and Jen break down three recent cybersecurity incidents affecting healthcare and social services organizations: Microsoft Teams impersonation attacks targeting healthcare and financial sectors, fake AI apps harvesting credentials, and a ransomware breach at a nonprofit serving vulnerable populations. The discussion highlights how misconfigurations and overlooked security basi...
Navia Benefit Solutions announces breach impacting nearly 3 million 27.03.2026 4:01
In this episode, we break down recent healthcare cybersecurity incidents including the Navia benefits administrator breach affecting nearly three million individuals, ransomware attacks on Kettering Health and a US healthcare provider, and the Essen Medical Associates settlement. We examine common vulnerabilities across these cases—from inadequate privileged access monitoring to untested incident...
Paubox recognized as email encryption leader in G2 Spring 2026 Reports 20.03.2026 4:00
In this episode, Alex and Jen break down the latest cybersecurity incidents affecting healthcare, including ransomware targeting community health organizations, phishing attacks leveraging trusted cloud platforms, MFA bypass techniques, and the exploitation of legitimate admin tools in cloud environments. The discussion emphasizes that most breaches stem from preventable configuration gaps and off...
68. Aja Anderson: "Bad actors are offering your employees incentives to help them." 16.03.2022 22:44
Episode 68 features Aja Anderson, Paubox Customer Success Manager.
67. Aja Anderson: "The gaps in cybersecurity are not complicated, hyper-technical ones. They're just basic user errors." 22.02.2022 19:10
Episode 67 features Aja Anderson, Paubox Customer Success Manager.
66. Hoala Greevy: "Just automating one workflow creates an instant ROI for the business" 15.02.2022 15:24
Episode 66 of HIPAA Critical features an interview with Founder CEO, Hoala Greevy, about workflow automation.
65. Aja Anderson: "That's the sweet spot for threat actors coming after you because they know that there's money there." 19.01.2022 15:57
Episode 65 of HIPAA Critical recaps the HIPAA Breach Report details breaches from December 2021.
64. Dave Ledoux: "I'm ready to pivot at any time." 01.12.2021 22:29
Episode 64 of HIPAA Critical features an interview with Dave Ledoux , CIO of Innovive Health .
63. Aja Anderson: "As long as people can make money, they're gonna keep [attacking]. As long as your systems are not secure, you're at risk." 10.11.2021 16:10
Episode 63 of HIPAA Critical features a discussion with Aja Anderson on this month's Paubox HIPAA Breach Report.
62. Hector Rodriguez: "In healthcare, we have the challenges of cybersecurity, disaster recovery, and recovery strategies for ransomware mitigation." 03.11.2021 20:19
Episode 62 of HIPAA Critical features an interview with Hector Rodriguez, Principal Industry Specialist, Healthcare & Life Sciences - AWS
61. Su Bajaj: "The value of AI is what it's doing for you. It's not to replace people but to augment and make us more efficient and catch threats." 27.10.2021 19:16
Episode 61 of HIPAA Critical features an interview with Su Bajaj, CTO of Compex Legal.
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.