Sign up for our daily briefing

Make your busy days simpler with Axios AM/PM. Catch up on what's new and why it matters in just 5 minutes.

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Catch up on the day's biggest business stories

Subscribe to Axios Closer for insights into the day’s business news and trends and why they matter

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Sign up for Axios Pro Rata

Dive into the world of dealmakers across VC, PE and M&A with Axios Pro Rata. Delivered daily to your inbox by Dan Primack and Kia Kokalitcheva.

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Sports news worthy of your time

Binge on the stats and stories that drive the sports world with Axios Sports. Sign up for free.

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Tech news worthy of your time

Get our smart take on technology from the Valley and D.C. with Axios Login. Sign up for free.

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Get the inside stories

Get an insider's guide to the new White House with Axios Sneak Peek. Sign up for free.

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Catch up on coronavirus stories and special reports, curated by Mike Allen everyday

Catch up on coronavirus stories and special reports, curated by Mike Allen everyday

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Want a daily digest of the top Denver news?

Get a daily digest of the most important stories affecting your hometown with Axios Denver

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Want a daily digest of the top Des Moines news?

Get a daily digest of the most important stories affecting your hometown with Axios Des Moines

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Want a daily digest of the top Twin Cities news?

Get a daily digest of the most important stories affecting your hometown with Axios Twin Cities

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Want a daily digest of the top Tampa Bay news?

Get a daily digest of the most important stories affecting your hometown with Axios Tampa Bay

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Want a daily digest of the top Charlotte news?

Get a daily digest of the most important stories affecting your hometown with Axios Charlotte

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Want a daily digest of the top Nashville news?

Get a daily digest of the most important stories affecting your hometown with the Axios Nashville newsletter.

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Want a daily digest of the top Columbus news?

Get a daily digest of the most important stories affecting your hometown with the Axios Columbus newsletter.

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Want a daily digest of the top Dallas news?

Get a daily digest of the most important stories affecting your hometown with the Axios Dallas newsletter.

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Want a daily digest of the top Austin news?

Get a daily digest of the most important stories affecting your hometown with the Axios Austin newsletter.

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Want a daily digest of the top Atlanta news?

Get a daily digest of the most important stories affecting your hometown with the Axios Atlanta newsletter.

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Want a daily digest of the top Philadelphia news?

Get a daily digest of the most important stories affecting your hometown with the Axios Philadelphia newsletter.

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Want a daily digest of the top Chicago news?

Get a daily digest of the most important stories affecting your hometown with the Axios Chicago newsletter.

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Sign up for Axios NW Arkansas

Stay up-to-date on the most important and interesting stories affecting NW Arkansas, authored by local reporters

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Want a daily digest of the top DC news?

Get a daily digest of the most important stories affecting your hometown with the Axios DC newsletter.

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Please enter a valid email.

Please enter a valid email.

Subscription failed
Thank you for subscribing!

Rebecca Zisser / Axios

It's been a few months since the worldwide WannaCry ransomware attacks, and a month and a half since the NotPetya attacks that hit U.S. hospitals and the drug company Merck. The cyberattacks were bad enough to get the attention of the health care industry — and the rest of us — but not bad enough to force the industry to solve the underlying problems.

The bottom line: A cyberattack that takes down multiple hospital systems is "the thing that keeps me up at night," said Richard Staynings, principal and cybersecurity healthcare leader at Cisco. "I have no way of knowing the last time a patient received their medication … It essentially renders hospitals near useless."

Here's what's changed and what still hasn't, according to cybersecurity experts.

Changed:

  • Hospitals and other health care facilities have been reluctant to install security patches on devices that have to be available at all times, like CT scanners. But they're becoming more open to it "now that the risk equation has changed significantly," meaning it's clearly more dangerous to be vulnerable to an attack than to take a device offline, according to Staynings.
  • Hospital officials are generally more aware of the importance of cybersecurity. "I think they're interested — I'm not sure they understand what they should be doing," said David Damato, chief security officer at the cybersecurity startup Tanium.

Not changed:

  • Health care organizations still don't spend a lot on cybersecurity, compared to traditional priorities like doctors and researchers. "Health care is now an easy target compared to financial services," said Staynings.
  • It's an increasingly urgent issue as more and more software is added, especially at smaller facilities that don't have a lot of money to spend, said Bryan Sivak, a former chief technology officer at the Department of Health and Human Services.
  • Electronic health records are becoming a big worry. You don't want someone getting in and changing a patient's blood type, for example, or getting access to highly sensitive personal information about them.
  • Old or unpatched operating systems will always leave health care facilities vulnerable. "We've been talking about this for decades and are still running into the same problems," said Sivak.
  • Facilities have to learn to segment their networks, or divide them into subnetworks to make them more secure. (That's a tough task, though, if they don't have a lot of IT resources.)
  • Vendors have to be more willing to patch their medical devices — some don't want to change them for risk of losing their certifications from the Food and Drug Administration. And the FDA "has sat on the fence on this issue, quite frankly, for the last few years," said Staynings.

Go deeper

Battle for the soul of a new web

Illustration: Aïda Amer/Axios

A well-funded and intensely motivated chunk of tech's hive mind is finding common cause in a vast new project: rebuilding the web on a foundation of cryptocurrency and blockchain tech. They call it "Web3."

The big picture: Developers, investors and early adopters imagine a future in which the technologies that enable Bitcoin and Ethereum will break up the concentrated power today's tech giants wield and usher in a golden age of individual empowerment and entrepreneurial freedom.

First look: Biden summons top CEOs on supply chain

Photo: Alex Wong/Getty Images

President Biden will meet Monday afternoon with CEOs of big retailers, grocers and consumer-products firms to send this message, according to the White House: Products will be on shelves for holiday shopping.

Zoom out: Black Friday sales rebounded from 2020.

Thanksgiving box office shows theaters have long road to recovery

Photo of Disney's "Encanto;" Credit: Disney

Box office ticket sales over the Thanksgiving holiday show that consumer confidence in moviegoing is slowly improving, but not enough to bring the struggling theater industry back to pre-pandemic levels anytime soon, if ever.

Why it matters: "We may have to temper expectations a bit" for next year, said Comscore senior media analyst Paul Dergarabedian.