Midweek Update

Midweek Update

Photo by Manasvita S on Unsplash

From Washington, DC,

  • The Wall Street Journal adds,
    • “A summer Covid wave is hitting the country, but there’s one consolation: Your chances of developing long Covid have fallen since the start of the pandemic. 
    • “That’s the finding from a new study in the New England Journal of Medicine. It concluded that about 10% of people infected with the virus’s original strain developed long Covid. By contrast, the risk of developing long Covid dropped to 3.5% with the virus’s Omicron variant among vaccinated people. For the unvaccinated, the risk was 7.7.%.
    • “Researchers defined long Covid as people who experienced persistent and debilitating symptoms such as a racing heartbeat or brain fog, or other new health problems linked to the initial illness, a month or more after their infection.
    • “About 70% of the drop in long Covid cases was due to vaccination and 30% because of changes in the virus itself, the study determined. 
    • “Four years since the start of the pandemic, we’re getting used to periodic waves of Covid cases, including the uptick we’re seeing now, driven by Omicron subvariants. The threats of severe illness and lingering health problems have significantly subsided, though they haven’t disappeared.”
  • Beckers Hospital Review reports,
    • “As the House Committee on Oversight and Accountability investigates pharmacy benefit managers regarding alleged anticompetitive practices, the committee scheduled a hearing with leaders of the top three PBMs. 
    • “On July 23, [at 10 am ET], members of the House Committee on Oversight and Accountability plan to ask executives at Express Scripts/Evernorth, CVS Caremark and OptumRx about the alleged anticompetitive policies, which committee members say raise prescription drug costs, harm independent pharmacies and obstruct patient care. 
    • “The three PBMs account for about 80% of the market share. 
    • “The called witnesses are Adam Kautzner, PharmD, president of Evernorth Care Management and Express Scripts; David Joyner, executive vice president of CVS Health and president of CVS Caremark; and Patrick Conway, MD, CEO of OptumRx.”
  • The FEHBlog discovered today that on July 11, 2024, Rep. Gary Palmer (R Ala.) introduced House Jt. Resolution 187 which reads,
    • Resolved by the Senate and House of Representatives of the United States of America in Congress assembled, That Congress disapproves the rule submitted by the Office of Personnel Management relating to Postal Service Reform Act; Establishment of the Postal Service Health Benefits Program (89 Fed. Reg. 37061), and such rule shall have no force or effect.”
  • The cited rule is the OPM’s May 2024 supplemental rule implementing the PSHBP. In the FEHBlog’s opinion, the provision of the rule which offends Rep. Palmer (and the FEHBlog) for that matter is found in an OPM FAQ:
    • “While the proposed rule reflects that Medicare Part D-eligible annuitants and their Part D-eligible family members would be automatically group enrolled into the Part D EGWP, it reflects that they may choose to opt out of receiving prescription drug coverage through the PSHB Part D EGWP. This proposed rule provides, consistent with the statute, that the Part D EGWP offered by their PSHB plan is the only PSHB prescription drug benefit available for Part D-eligible PSHB annuitants and their Part D-eligible covered family members. As proposed, Medicare Part D-eligible annuitants and their family members who choose to opt out of or disenroll from the PSHB plan’s Part D EGWP would not have access to prescription drug benefits through their PSHB plan and would not pay a lower premium than those enrolled in the Part D EGWP.
  • Nothing in the Postal Service Reform Act suggests that Congress intended to impose such a penalty. It’s a penalty because OPM does not reduce the premium for members who are deprived of their plan’s prescription drug benefits. Furthermore, when Congress included a mandate for PSHBP annuitants to enroll in Part B, it also provided grandfathering protections and exemptions. The Part D penalty applies across the board.
  • In any case, because Part D benefits will feature improvements such as a $2,000 out of pocket cost maximum for 2025, the carrot approach to incenting Part D EGWP enrollment should be tried first.
  • The American Hospital Association News lets us know,
    • “The Administration for Strategic Preparedness and Response July 16 announced it will work with the Department of Commerce on an assessment of the active pharmaceutical industrial base to better understand the pharmaceutical supply chain and how it has changed since the COVID-19 pandemic. The assessment is based on a survey conducted last winter. The study will inform federal strategies and funding decisions related to the API supply chain and raise awareness of potential supply chain issues, such as the current limited domestic manufacturing capabilities and other potential issues. The study will survey more than 200 companies, including manufacturers, distributors, suppliers and customers. A Bureau of Industry and Security webpage answers FAQs about the project.”

From the public health and medical research front,

  • STAT News tells us,
    • “The Centers for Disease Control and Prevention just released a trove of data on Americans with disabilities that found that more than a quarter of U.S. adults have a disability — over 70 million people, a bump from prior years. This slice of the population was also much more likely to report long Covid symptoms such as chronic fatigue and brain fog. This comorbidity looms large for many disabled communities as another surge in Covid cases sweeps the country.
    • “The data, gathered in 2022, is part of the agency’s Disability and Health Data System, which has annual state and national-level data stretching back to 2016. This is the first year that the agency has released long Covid data, finding that 11% of people with disabilities had long Covid symptoms while only 7% of people without disabilities reported symptoms.
    • “For many disabilities, the highest populations exist in a swath that extends from the Deep South and Louisiana up to Appalachian communities in West Virginia and Ohio. Disability benefits claims are typically highest in these areas, but for long Covid, the geography shifted west. Idaho and other states along the Continental Divide saw much higher rates of symptoms, with Montana recording the highest prevalence at 18%.”
  • The New York Times adds,
    • “A large new study provides some of the strongest evidence yet that vaccines reduce the risk of developing long Covid.
    • “Scientists looked at people in the United States infected during the first two years of the pandemic and found that the percentage of vaccinated people who developed long Covid was much lower than the percentage of unvaccinated people who did. 
    • “Medical experts have previously said that vaccines can lower the risk of long Covid, largely because they help prevent severe illness during the infection period and people with severe infections are more likely to have long-term symptoms.
    • “But many individuals with mild infections also develop long Covid, and the study, published Wednesday in The New England Journal of Medicine, found that vaccination did not eliminate all risk of developing the condition, which continues to affect millions in the United States.”
  • STAT News also informs us,
    • “A study published Wednesday in the Journal of Clinical Oncology found that certain unmatched donors, or people whose bone marrow does not as closely resemble that of the patient’s, provided similar outcomes to matched donors so long as patients receive a key drug called cyclophosphamide to prevent dangerous complications. That suggests that patients who need a transplant might be able to safely consider both matched and some unmatched donors, vastly expanding the pool of potential acceptable donors for all patients, though particularly those of African, Latino, or Asian ancestry.
    • “It’s much harder to find a match for most of my patients. Looking to people who are donor unrelated and aren’t a perfect match for my patients has become the norm,” said Sekeres, who is the chief of hematology at Sylvester Cancer Center at the University of Miami and did not work on the study. “That’s why this study really resonated with me. The classic teaching is you want a perfect match as opposed to less than perfect. What this study suggests is, if you use the right drugs after transplant, it may not be as big of a deal.”
    • “If so, up to roughly 84% of African American patients might have a potential donor in the national registry. Currently, less than 30% of African American patients have a potential match in the NMDP registry, previously called the National Marrow Donor Program.”
  • Per BioPharma Dive,
    • “A closely watched obesity pill being developed by Roche helped people in a small Phase 1 trial lose 7.3% of their body weight over four weeks when taken once daily — 6.1 percentage points more than those given a placebo, the company said Wednesday.
    • “The data comes two months after the Swiss drugmaker disclosed trial results from another obesity drug in its pipeline, which showed the once-weekly injection helped reduce body weight by 19% over six months. Roche disclosed more detailed data for that drug, indicating none of the trial participants stopped taking it due to side effects — a reason users might quit taking Wegovy or Zepbound.
    • “The two drugs came from Roche’s $2.7 billion acquisition of biotechnology startup Carmot Therapeutics in December. The deal was part of a rush by pharmaceutical companies to enter a market estimated to be worth more than $100 billion annually by early next decade.”
  • Beckers Hospital Review interviews NYU Langone’s bariatric surgery chief about the first GLP-1 generic and other GLP-1 issues.
  • Per a National Institutes of Health press release,
    • “A neuroimaging study of young people who exhibit a persistent pattern of disruptive, aggressive, and antisocial behavior, known as conduct disorder, has revealed extensive changes in brain structure. The most pronounced difference was a smaller area of the brain’s outer layer, known as the cerebral cortex, which is critical for many aspects of behavior, cognition and emotion. The study, co-authored by researchers at the National Institutes of Health (NIH), is published in The Lancet Psychiatry.
    • “Conduct disorder has among the highest burden of any mental disorder in youth. However, it remains understudied and undertreated. Understanding brain differences associated with the disorder takes us one step closer to developing more effective approaches to diagnosis and treatment, with the ultimate aim of improving long-term outcomes for children and their families,” said co-author Daniel Pine, M.D., chief of the Section on Development and Affective Neuroscience in NIH’s National Institute of Mental Health. “Critical next steps are to follow children over time to determine if differences in brain structure seen in this study are a cause of conduct disorder or a long-term consequence of living with the disorder.”
  • The National Cancer Institute posted its latest cancer information highlights.
  • The Institute of Clinical and Economic Review “releasedDraft Evidence Report assessing the comparative clinical effectiveness and value of acoramidis (BridgeBio Pharma, Inc.), tafamidis (Vyndamax®/Vyndaqel®, Pfizer Inc.), and vutrisiran (Amvuttra®, Alnylam Pharmaceuticals, Inc.) for the treatment of transthyretin amyloid cardiomyopathy (ATTR-CM).”
  • AHRQ’s Patient Safety Network informs us,
    • “Patients presenting to the emergency department (ED) are triaged to prioritize care based on level of illness. In this study, 2,543 patients presenting to an ED in Switzerland were asked to self-triage using an electronic symptom-checker. (Patients were triaged and treated based on standard-of-care nurse triage.) Recommendations were given regarding time to treat (e.g., emergency) and point-of-care (e.g., self-care) and subsequently evaluated by three panels of experts. Fifty of the 2,543 patients were judged as undertriaged, but none were judged as potentially hazardous.”

From the U.S. healthcare front,

  • Healthcare Dive points out,
    • “Elevance reported solid second-quarter results on Wednesday — including $2.3 billion in profit — but the company still lowered long-term revenue growth guidance for its health insurance business. That disconnect raised red flags for analysts.”
    • “Changing revenue growth forecasts for health benefits in the middle of the year “is unusual,” commented Jefferies analyst David Windley in a Wednesday note. “We can’t identify a single, large item that would compel [the reduction] off-cycle.”
    • “During a call with investors Wednesday, Elevance management cited several factors for dropping the guidance, including significant member losses from Medicaid redeterminations and Medicare Advantage bids for 2025 that could slow growth.”
  • Fierce Pharma reports,
    • “As myriad pharma industry attempts to challenge the Inflation Reduction Act (IRA) fall flat, Johnson & Johnson is settling into a reality of pricing rebates and Medicare drug cost negotiations.”
    • “While J&J is “not in alignment” with IRA or its price setting process, the company has accepted the reality of the situation and baked assumptions about the future costs of its drugs into its growth projections through the end of the decade, Jennifer Taubert, EVP, worldwide chairman, innovative medicine at J&J, said on an analyst call Wednesday.
    • “As it stands, J&J currently expects to grow its business by 3% next year and then 5% to 7% out through 2030, Taubert said.”
  • Per Fierce Healthcare,
    • “Electronic health record messages to patients drafted by generative AI were of similar quality and accuracy to those written by healthcare professionals, according to a newly published study conducted using queries from NYU Langone Health patients.”
    • “The analysis, headed by researchers at the system’s affiliate NYU Grossman School of Medicine, had 16 primary care physicians rate AI and human drafts without knowing how each was written.
    • “Among a sample of 334 AI-drafted messages and 169 from professionals (both physicians and non-physicians), the raters found both sets to be on par regarding informational content, completeness and whether the grader would use the draft or start again from scratch.”
    • “The findings “suggest chatbots could reduce the workload of care providers by enabling efficient and empathetic responses to patients’ concerns,” study lead William Small, M.D., of the medical school, said in a release.”

Cybersecurity Saturday

From the cybersecurity policy front,

  • Cybersecurity Dive lets us know,
    • “Microsoft President Brad Smith promised to move forward with significant culture changes at the tech giant as the company accepted full responsibility for its security failures, he said in testimony Thursday [June 13] before the House Committee on Homeland Security.
    • “Smith, who also serves as vice chair, testified before lawmakers Thursday in response to a blistering report from the U.S. Cyber Safety Review Board that analyzed Microsoft’s security culture following the summer 2023 hack of Microsoft Exchange Online by a state-linked threat group. 
    • “Smith was asked repeatedly during the hearing about whether Microsoft is changing its culture to encourage workers to speak up about security concerns. 
    • “We want a culture that encourages every employee to look for problems, find problems, report problems, help fix problems and then learn from the problems,” Smith said during questioning.” 
  • Cyberscoop tells us,
    • “A congressional watchdog is sending a reminder to the White House that it has a long laundry list of cybersecurity regulations to address as the 2024 election draws near.
    • “The Government Accountability Office is breaking biennial tradition with the latest update to its “high-risk list,” a term the watchdog uses to denote areas that are “vulnerable to waste, fraud, abuse, or mismanagement, or in need of transformation.”
    • “Cybersecurity has been on the GAO’s high-risk list since 1997, Sarah Kaczmarek, acting managing director for GAO’s Office of Public Affairs, said during a call with reporters this week. * * *
    • “The more than 80-page report goes over four main areas: establishing a comprehensive cybersecurity strategy with effective oversight, securing federal systems and information, protecting critical infrastructure and protecting privacy and sensitive data.
    • “The White House has yet to implement 567 out of 1,610 cybersecurity-related recommendations the government watchdog has issued since 2010, according to the report.
    • “A lot of them are really, really critical to securing the cybersecurity of our nation,” said Marisol Cruz Cain, director of information technology and cybersecurity at the GAO.”
  • Federal News Network adds,
    • “The number of cybersecurity incidents in 2023 grew by almost 10%. Agencies reported more than 32,000 cyber incidents to the Cybersecurity and Infrastructure Security Agency in fiscal 2023. The latest Federal Information Security Modernization Act (FISMA) report to Congress from the Office of Management and Budget showed an increase from more than 29,000 cyber incidents from the year before. Of those 32,000 incidents, 38% — or more than 12,000 — were due to improper usage, which means someone violated an agency’s acceptable use policy. The second biggest attack vector, once again, was email phishing, which saw more than a 50% increase in 2023 as compared to 2022. The good news, OMB said, is 99% of all incidents in 2023 were considered “unsubstantiated or inconsequential event[s].”(Most cyber events in 2023 were ‘unsubstantiated or inconsequential,’ OMB says – White House)”
  • Per a Cybersecurity and Infrastructure Security Agency (CISA) press release,
    • “Yesterday [June 13], the Cybersecurity and Infrastructure Security Agency (CISA) conducted the federal government’s inaugural tabletop exercise with the private sector focused on effective and coordinated responses to artificial intelligence (AI) security incidents. This exercise brought together more than 50 AI experts from government agencies and industry partners at the Microsoft Corp. facility in Reston, Virginia.
    • “The four-hour exercise was led by the Joint Cyber Defense Collaborative (JCDC), a public-private partnership model established by CISA to undertake joint planning efforts and drive operational collaboration. This exercise simulated a cybersecurity incident involving an AI-enabled system and participants worked through operational collaboration and information sharing protocols for incident response across the represented organizations. CISA Director Jen Easterly and FBI Cyber Division Deputy Assistant Director Brett Leatherman delivered opening and closing remarks, respectively, emphasizing the need for advancing robust operational structures to address existing and potential security threats, while prioritizing secure-by-design AI development and deployment.
    • “This tabletop exercise is supporting the development of an AI Security Incident Collaboration Playbook spearheaded by JCDC.AI, a dedicated planning effort within JCDC focused on building an operational community of AI providers, AI security vendors, and other critical infrastructure owners/operators to address risks, threats, vulnerabilities, and mitigations concerning AI-enabled systems in national critical infrastructure. The playbook, slated for publication by year-end, will facilitate AI security incident response coordination efforts among government, industry, and global partners.”

From the cybersecurity vulnerabilities and breaches front,

  • Modern Healthcare informs us,
    • “Ascension said Friday it has restored access across all markets to the core system for electronic health records and patient portals after a cyberattack.
    • “Patients should see a smoother process for scheduling appointments and filling prescriptions, plus improved wait times, Ascension said in a news release. Some information may be temporarily inaccessible as the system updates medical records collected in the last month, according to the health system. * * *
    • “Ascension did not provide further details on what additional systems still need to be restored and the expected timeline for restoration. Ascension set a June 14 deadline for restoring electronic medical records.”
  • Cybersecurity Dive adds,
    • “Personally identifiable and protected health information may have been exposed during a cyberattack at Ascension last month, the Catholic health system said Wednesday. 
    • “Hackers were able to take files from seven servers used by Ascension for routine tasks. The provider said it has about 25,000 servers across its network.
    • “The attackers gained access to Ascension systems after a worker accidentally downloaded a malicious file, according to the health system.”
  • HHS’s Health Sector Cybersecurity Coordination Center released its May 2024 report on vulnerabilities of interest to the health sector.
  • CISA added the following known exploited vulnerabilities to its catalog last week
  • Bleeping Computer adds,
    • “The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity Windows vulnerability abused in ransomware attacks as a zero-day to its catalog of actively exploited security bugs [on June 13].
    • “Tracked as CVE-2024-26169, this security flaw is caused by an improper privilege management weakness in the Windows Error Reporting service. Successful exploitation lets local attackers gain SYSTEM permissions in low-complexity attacks that don’t require user interaction.
    • “Microsoft addressed the vulnerability on March 12, 2024, during its monthly Patch Tuesday updates. However, the company has yet to update its security advisory to tag the vulnerability as exploited in attacks.”
  • CISA further warns the public,
    • “Impersonation scams are on the rise and often use the names and titles of government employees. The Cybersecurity and Infrastructure Security Agency (CISA) is aware of recent impersonation scammers claiming to represent the agency. As a reminder, CISA staff will never contact you with a request to wire money, cash, cryptocurrency, or use gift cards and will never instruct you to keep the discussion secret.
    • “If you suspect you are a target of an impersonation scammer claiming to be a CISA employee: 
      • Do not pay the caller.
      • Take note of the phone number calling you.
      • Hang up immediately.
      • Validate the contact by calling CISA at (844) SAY-CISA (844-729-2472) or report it to law enforcement.
  • Per Cybersecurity Dive,
    • “More than 100 Snowflake customers are caught in a widespread identity-based attack spree targeting the cloud-based data warehouse vendor’s customers, Mandiant said Monday in a threat intelligence report. The attacks were not caused by a breach of Snowflake’s systems, Mandiant said.
    • “Since at least April 2024, UNC5537 has leveraged stolen credentials to access over 100 Snowflake customer tenants,” Mandiant Consulting CTO Charles Carmakal said Monday in a prepared statement. “The threat actor systematically compromised customer tenants, downloaded data, extorted victims and advertised victim data for sale on cybercriminal forums.”
    • “Snowflake first disclosed the attacks on May 30 and said it first became aware of the malicious activity on May 23. Snowflake was not immediately available to comment on Mandiant’s research. Mandiant and CrowdStrike are assisting Snowflake with an ongoing investigation.”
  • and
    • “Researchers on Friday [June 14] warned a critical vulnerability in the PHP programming language is under increased exploitation activity, as the TellYouThePass ransomware group is targeting vulnerable sites, according to a blog post from Censys
    • “The vulnerability, listed as CVE-2024-4577, has been under attack from the threat group since at least June 7, with about 1,000 infected hosts observed as of Thursday — they are mainly located in China. The number of observed infections is down from about 1,800 as of June 10. 
    • “The Cybersecurity and Infrastructure Security Agency added CVE-2024-4577 to its known exploited vulnerabilities catalog on Wednesday. [June 12]” 

From the cybersecurity defenses front,

  • Health IT Security reports,
    • “Microsoft and Google have pledged to help rural hospitals prevent cyberattacks by offering free or discounted cybersecurity resources. The commitment from the tech giants is part of a White House-led initiative to bolster cybersecurity in the healthcare sector.”
    • “According to an announcement from the White House, Microsoft will extend its nonprofit program to provide grants to independent critical access hospitals and rural emergency hospitals. For these types of hospitals, the company will also offer a 75% discount on security products optimized for smaller organizations. Larger rural hospitals already using eligible Microsoft solutions will receive the company’s “most advanced security suite at no additional cost for one year.”
    • “The White House also said Microsoft will offer free cybersecurity assessments by technology security providers and free training for frontline and IT staff at eligible rural hospitals. The company also pledged to extend security updates for Windows 10 to participating hospitals for one year at no cost.”
  • Here’s a link to Dark Reading’s CISO corner.
  • Here ares links to an ISACA Blog article titled “Managing AI’s Transformative Impact on Business Strategy & Governance: Strategies for CISOs,” and a Tech Target article titled “How to craft a responsible generative AI strategy.”

 

Tuesday Tidbits

Photo by Patrick Fore on Unsplash

From Washington, DC

  • Chief Healthcare Executive lets us know,
    • Telehealth advocates have said this year represents the Super Bowl for virtual healthcare, and the game is about at halftime.
    • On the upside, telehealth leaders remain confident that Congress will approve legislation that would allow health systems and providers to continue offering virtual care and hospital-at-home programs.
    • But lawmakers may not act until late in the fourth quarter [in other words, the expected lame duck session following the November’s national election].
  • Roll Call informs us,
    • “The Supreme Court will decide a dispute about hospital reimbursement rates under Medicare, with hundreds of hospitals arguing the government had shorted them for treating low-income patients.
    • More than 200 hospitals in more than 30 states, led by Advocate Christ Medical Center in Illinois, have asked the justices to overturn a lower court ruling that allows the Department of Health and Human Services to reimburse a lower rate for treating a high proportion of low-income patients. The dispute, which the hospitals said could affect more than $4 billion in federal funds, hinges on how to determine which patients count toward that reimbursement rate and follows a 2022 Supreme Court decision over the same program.
    • The justices announced Monday that they would decide the case, which means oral arguments and a decision would come in the next term that starts in October.
  • Federal News Network tells us,
    • “The Chief Human Capital Officers (CHCO) Council has a new face taking the lead to collaborate on human capital initiatives and strategies across government.”
    • “Colleen Heller-Stein, formerly deputy CHCO at the Treasury Department, has stepped in as executive director of the CHCO Council, Federal News Network has learned. The senior-level position within the Office of Personnel Management leads agency CHCOs and other human capital leaders to innovate on best practices for managing the recruitment and retention of the federal workforce.
    • “Heller-Stein is the first career federal executive to serve in the CHCO Council leadership role. She took over the position a few weeks ago from Latonia Page, who had been working as acting executive director of the CHCO Council since September 2023. Prior to Page’s time on the job, Margot Conrad — currently deputy chief of staff at OPM — served as the council’s executive director for about two and a half years.”‘

From the public health and medical research front,

  • KFF expresses concern about the general unavailability of bird flu tests.
    • “A recent rule that gives the FDA more oversight of lab-developed tests may bog down authorization. In a statement to KFF Health News, the FDA said that, for now, it may allow tests to proceed without a full approval process. The CDC did not respond to requests for comment.”
    • “But the American Clinical Laboratory Association has asked the FDA and the CDC for clarity on the new rule. “It’s slowing things down because it’s adding to the confusion about what is allowable,” said Susan Van Meter, president of the diagnostic laboratory trade group.
    • “Labcorp, Quest Diagnostics, and other major testing companies are in the best position to manage a surge in testing demand because they can process hundreds per day, rather than dozens. But that would require adapting testing processes for their specialized equipment, a process that consumes time and money, said Matthew Binnicker, director of clinical virology at the Mayo Clinic.
    • “There’s only been a handful of H5N1 cases in humans the last few years,” he said, “so it’s hard for them to invest millions when we don’t know the future.”
  • The Wall Street Journal offers guidance on how people can improve the deathbed experiences of loved ones.
  • Beckers Hospital Review points out,
    • “Baltimore-based Johns Hopkins School of Nursing is addressing community needs by taking primary care door to door, NPR reported June 11.
    • “The Neighborhood Nursing pilot program consists of a team of nurses and community health workers that make weekly visits to three apartment buildings in Johnston Square, a predominantly Black disadvantaged neighborhood. The visits are free to patients and are not dependent on health status, income or what type of insurance, if any, they have. Visits are done in people’s homes, senior centers, lobbies, libraries and anywhere else people can be found. 
    • “In the time it has run, Neighborhood Nursing has successfully helped patients receive care and has expedited physicians’ appointments as needed. However, the greatest challenge is funding.”
  • Per Healio,
    • “From 2010 to 2021, most high and moderate risk factors for preeclampsia increased in the U.S.
    • “Multifetal gestation and nulliparity were the only preeclampsia risk factors to decrease during this period.”
  • Per BioPharma Dive,
    • “Pharmaceutical companies employ many different strategies when building their cancer drug pipelines, but one recent commonality among them is a belief in the future of targeted therapies known as antibody-drug conjugates.
    • “Many of the leading cancer drugmakers have at least one or two antibody-drug conjugates, or ADCs, in development. Others, such as PfizerJohnson & Johnson and Merck & Co., have used buyouts or partnerships to build an ADC portfolio.
    • “One of the best-selling ADCs on the market is AstraZeneca and Daiichi Sankyo’s Enhertu, which brought in combined sales of $2.5 billion in 2023, almost double the year before. The two companies formed a $7 billion alliance around Enhertu in 2019 and since then, the drug has secured multiple approvals and changed the way some breast cancers are treated.
    • “Over that time, AstraZeneca has made ADCs a more substantial part of its overall pipeline alongside radiopharmaceuticals and immunotherapies, giving the company many potential combinations to work with, said Carlos Doti, vice president and head of medical affairs for its U.S. oncology division.”

From the U.S. healthcare business front,

  • Beckers Payer Issues notes,
    • “CMS must recalculate the Medicare Advantage star ratings for Anthem Blue Cross Blue Shield of Georgia, a federal judge ruled June 10. 
    • “The judge ruled partially in favor of Elevance Health, which sued to challenge CMS’ star ratings methodology in December. The insurer sought new ratings for several of its subsidiaries, but the judge ruled CMS needs to recalculate ratings only for BCBS of Georgia. 
    • “Elevance’s challenge focused on CMS’ use of the Tukey method, a change announced by CMS in a 2020 final rule and implemented in 2024 star ratings. The method removes extreme outliers from measure scores to prevent outliers from affecting all MA contracts, making it more difficult for plans to earn a high star rating. In 2022, a final star ratings rule from CMS did not mention the new change, which the agency added back in the 2023 rule, citing an inadvertent removal. 
    • “CMS also limits scoring changes to 5% annually. In the lawsuit, Elevance said CMS should have factored in those limits before adding the Tukey change back in 2023 versus the other way around.
    • “Randolph Moss, a judge for the U.S. District Court in Washington, D.C, ruled CMS violated the Administrative Procedure Act in applying the Tukey methodology. However, Mr. Moss ruled Elevance proved the Tukey method affected the star rating only for BCBS of Georgia and not the other plans for which it sought revised ratings.” 
  • This opinion and last week’s Scan Health opinion may wind up before the U.S. Court of Appeals for the D.C. Circuit.
  • Per Healthcare Dive,
    • “Just three days before bankrupt Steward Health Care was set to run out of funds, the health system said it’s struck a deal to capture $225 million of additional debtor-in-possession financing to keep its operations afloat during Chapter 11 proceedings.
    • “The funds come from Steward’s FILO lenders, which include private credit lenders Sound Point Capital and Brigade Agency Services, as well as Chamberlain Commercial Funding, according to a press release shared with Healthcare Dive. 
    • “Steward will present the deal — which the system says is sufficient to finance operations prior to its July asset sales — for approval in bankruptcy court later this week.”
  • According to BioPharma Dive,
    • “Approval of Eli Lilly’s experimental Alzheimer’s disease drug donanemab would help drive sales of Eisai and Biogen’s rival medicine Leqembi, analysts wrote after a Food and Drug Administration panel on Monday supported clearance of donanemab.
    • “A rising tide lifts all boats, in our view,” wrote Myles Minter, an analyst at William Blair, in a client note. Donanemab works similarly to Leqembi by eliminating from the brain a toxic protein called amyloid that scientists see as linked to Alzheimer’s progression.”
  • McKinsey & Co. discusses the ongoing digital transformation in healthcare.
  • The International Foundation of Employee Benefit Plans shares useful insights on the final rules amending the Fair Labor Standards Act that take effect on July 1.

Monday Roundup

Photo by Sven Read on Unsplash

From Washington, DC

  • The FEHBlog travelled back to DC yesterday,
  • Per a Department of Health and Human Services press release,
    • “Today, the U.S. Department of Health and Human Services’ (HHS) Health Resources and Services Administration (HRSA) announced a combined investment of $15 million over four years through the Rural Maternity and Obstetrics Management Strategies (Rural MOMS) Program to improve maternal health in rural communities and a new program focused on strengthening maternal care and reducing disparities in the Delta region (within Alabama, Arkansas, Illinois, Kentucky, Louisiana, Mississippi, Missouri, and Tennessee). HRSA Deputy Administrator Jordan Grossman highlighted these strategic investments today in Flagstaff, AZ, during the third state convening of HRSA’s Enhancing Maternal Health Initiative.”
  • The NIH Director in her blog tells us,
    • The NIH Brain Research Through Advancing Innovative Neurotechnologies® (BRAIN) Initiative has expanded scientists’ understanding of the human brain in recent years, offering fascinating insights into the ways that individual cells and complex neural circuits interact dynamically to enable us to think, feel, and act. But neuroscientists still have much more to learn about how our brains are put together at the most fundamental, subcellular level.  
    • As a step in that direction, in a new study supported in part by the NIH BRAIN Initiative and reported in the journal Science researchers have created the most detailed nanoscale resolution map ever produced of a cubic millimeter of brain tissue, about the size of half a grain of rice. * * *
    • While there is plenty still left to uncover, the findings offer proof-of-principle that it’s possible to visualize the brain at this very detailed level. This is crucial groundwork for new research now supported by the BRAIN Initiative Connectivity Across Scales (BRAIN CONNECTS) program. BRAIN CONNECTS will develop and scale up tools to produce an equally detailed map of a complete mouse brain, which is about 1,000 times larger than the human brain fragment. The researchers now hope their 3D map and others like it will be put to work to understand both normal and disordered brain function more fully.

From the public health and medical research front,

  • The AMA News lets us know what doctors wish their patients knew about the measles.
  • NIH announced.
    • “In a proof-of-concept study, researchers at the National Institutes of Health (NIH) have developed an artificial intelligence (AI) tool that uses routine clinical data, such as that from a simple blood test, to predict whether someone’s cancer will respond to immune checkpoint inhibitors, a type of immunotherapy drug that helps immune cells kill cancer cells. The machine-learning model may help doctors determine if immunotherapy drugs are effective for treating a patient’s cancer. The study, published June 3, 2024, in Nature Cancer, was led by researchers at the National Cancer Institute’s (NCI) Center for Cancer Research and Memorial Sloan Kettering Cancer Center in New York. NCI is part of the National Institutes of Health. * * *
    • “The researchers noted that larger prospective studies are needed to further evaluate the AI model in clinical settings. They have made their AI model, called Logistic Regression-Based Immunotherapy-Response Score (LORIS), publicly available at https://loris.ccr.cancer.gov. The tool estimates the likelihood of a patient responding to immune checkpoint inhibitors based on data on the six variables described above.”
  • Health Day tells us,
    • “About one in eight U.S. seniors will be treated for a traumatic brain injury, typically during a fall, a new study finds.” About one in eight U.S. seniors will be treated for a traumatic brain injury, typically during a fall, a new study finds.
    • “Medicare data shows that about 13% of seniors suffered a severe concussion during an average follow-up period of 18 years, researchers report.
    • “Although these injuries can be treated, they increase the risk of serious conditions like dementia, Parkinson’s disease, seizures, heart disease, depression and anxiety, they added.
    • “The number of people 65 and older with TBI is shockingly high,” said senior researcher Dr. Raquel Gardner, a neurologist with the Sheba Medical Center in Israel.”
  • Healio points out,
    • “Statin therapy was tied to a 5-year CVD risk reduction in adults aged 75 years and older.”Statin therapy was tied to a 5-year CVD risk reduction in adults aged 75 years and older.
    • “Statin use did not increase the risk for major adverse events, such as liver dysfunction.”

From the U.S. healthcare business front,

  • Beckers Hospital Review reports,
    • “Nonprofit hospital margins hit 4.3% in April, up 33% year over year, according to Kaufman Hall’s “National Hospital Flash Report” released June 3.”Nonprofit hospital margins hit 4.3% in April, up 33% year over year, according to Kaufman Hall’s “National Hospital Flash Report” released June 3.
    • “Kaufman Hall examined data from 1,300 hospitals in Syntellis Performance Solutions’ database and found that while hospital margins are improving overall, so is the gap between the highest and lowest performing hospitals. The best performing hospitals had a margin of 28.9%, compared to -16.1% for the worst performing hospitals. * * *
    • “Of note, the data revealed:
      • “1. Outpatient revenue increased 10% year over year in April.
      • “2. Average length of stay dropped 4% year over year in April.
      • “3. Emergency department visits increased to hit pre-pandemic levels.”
  • BioPharma Dive informs us,
    • “An experimental GLP-1 pill helped people with obesity lose significantly more weight than a placebo over three months, according to summary results revealed by developer Structure Therapeutics Monday.
    • “Structure’s drug led to an average reduction in body weight of 6.2% over placebo. One-third of those on the drug, dubbed GSBR-1290, lost 10% or more of their body weight, compared to zero of those given placebo.”
  • Per MedTech Dive,
    • “BD has agreed to buy Edward Lifesciences’ critical care group for $4.2 billion in cash, ending Edwards’ plan to spin off the business.
    • “In a Monday announcement, BD highlighted the group’s patient monitoring technologies and artificial intelligence-enabled clinical decision products that will add to BD’s existing businesses. Edwards’ critical care unit grew revenue by 8.5% year over year to $928.1 million in 2023.
    • “RBC Capital Markets analyst Shagun Singh said the deal would streamline Edwards. “Notably, the transaction creates a pure-play structural heart company positioning them for strategic initiatives that could further create shareholder value,” Singh wrote in a note to investors.”

Midweek Update

From Washington, DC

  • The New York Times reports,
    • “The chairmen of two Senate committees overseeing health policy, concerned about companies “padding their own profits” at the expense of patients, are looking into the practices of a data analytics firm that works with big insurers to cut payments to medical providers.
    • “The firm, MultiPlan, recommends what it says are fair payments for medical care, but the firm and the insurers can collect higher fees when payouts are lower. This business model could “result in an improper conflict of interest,” the chairmen of the two committees, Ron Wyden of Oregon and Bernie Sanders of Vermont, wrote in a letter to the firm’s chief executive that was released on Tuesday.
    • “The senators called on MultiPlan to meet with the committees’ staffs to discuss an investigation last month by The New York Times that found the firm’s pricing tools could leave patients with unexpectedly large bills when they see doctors outside their health plans’ networks.”
  • Govexec tells us,
    • “The Office of Personnel Management last week gave agencies a reminder that as campaign season approaches, officials should be vigilant against efforts to “burrow” political appointees into career positions in the federal government’s competitive and Senior Executive services.
    • “In a memo to agency heads, OPM’s associate director for merit system accountability and compliance Mark Lambert and associate director for workforce policy and innovation Veronica Hinton addressed the controversial practice, which is legal, albeit with a strict set of regulations to ensure political appointees are qualified for career roles they’re lined up for.”
  • KFF introduced,
    • “A new KFF resource—Health Policy 101—explains the basics on a wide range of topics about health programs and policy in the United States, such as Medicare and Medicaid, the Affordable Care Act, health care costs and affordability, women’s health issues, and the politics of health care. Health Policy 101 chapters are available online and can be downloaded in PDF format. The “101” was created to serve as a mini “textbook” for faculty and students interested in health policy. Dr. Drew Altman, KFF’s president and CEO, is the editor of the 101 series.”

From the public health and medical research front,

  • MedPage Today informs us,
    • “The updated monovalent XBB.1.5 COVID-19 vaccines were effective against Omicron subvariants circulating during the most recent respiratory virus season, but their effectiveness waned over time, according to a brief report.
    • “The three vaccines updated to target the SARS-CoV-2 XBB.1.5 subvariant — Moderna’s and Pfizer-BioNTech’s mRNA vaccines and the Novavax vaccine — were 66.8% effective against hospitalization at 4 weeks, decreasing to 57.1% after 10 weeks, wrote Dan-Yu Lin, PhD, of the UNC Gillings School of Global Public Health in Chapel Hill, North Carolina, and colleagues.
    • “Vaccine effectiveness against infection was about 52% after 4 weeks, decreasing to 33% after 10 weeks, and to 20% after 20 weeks, the New England Journal of Medicineopens in a new tab or window correspondence showed.
    • “We expected these vaccines to be effective, especially against hospitalization and death. We also expected the effectiveness to decline over time,” Lin told MedPage Today. “However, we didn’t know beforehand the levels of effectiveness or the duration of protection.”
  • The Wall Street Journal shares the view of readers who have used GLP-1 drugs.
    • “Hundreds of readers responded in the comments space and by email to Bradley Olson’s essay about his experience using a GLP-1 drug for weight loss. Readers shared stories about their own attempts to lose weight, journeys that often took place over the course of decades and included nonmedicinal strategies before the advent of GLP-1 drugs. Our readers made overwhelmingly positive comments about the medications, and in general found that the transformational impact of the GLP-1 drugs made such difficulties as getting prescriptions filled and side effects bearable. Some readers who have struggled to lose weight wrote that they found inspiration in Olson’s essay to consider trying a medical solution.” 
  • Per BioPharma Dive,
    • “A new kind of antidepressant eased symptoms and improved sleep among adults enrolled in a large Phase 3 trial, Johnson & Johnson, the drug’s developer, said Wednesday.
    • “J&J is studying the drug, called seltorexant, as an “adjunctive” therapy to background treatment with other antidepressants like SSRIs. The company’s trial enrolled adults with major depressive disorder as well as insomnia, which often accompanies depression and isn’t well treated by SSRIs.
    • “J&J didn’t disclose detailed data in its Wednesday statement. But the company did share the trial met all of its primary and secondary goals, noting the improvement in depressive symptoms among seltorexant-treated participants at study day 43 was both statistically significant and clinically meaningful.”
  • The New York Times dives into recent research on the sense of taste.
    • “The perception of taste is a remarkably complex process, starting from that first encounter with the tongue. Taste cells have a variety of sensors that signal the brain when they encounter nutrients or toxins. For some tastes, tiny pores in cell membranes let taste chemicals in.
    • “Such taste receptors aren’t limited to the tongue; they are also found in the gastrointestinal tract, liver, pancreas, fat cells, brain, muscle cells, thyroid and lungs. We don’t generally think of these organs as tasting anything, but they use the receptors to pick up the presence of various molecules and metabolize them, said Diego Bohórquez, a self-described gut-brain neuroscientist at Duke University. For example, when the gut notices sugar in food, it tells the brain to alert other organs to get ready for digestion.”
  • Healio lets us know,
    • “Women who get an epidural during delivery appear to have a marked reduction in serious complications the first few weeks after giving birth, a new study shows.
    • “A painkilling epidural can reduce risk by 35% in women for complications like heart attack, heart failure, blood infection and hysterectomy that can occur as a result of delivery, researchers reported May 22 in the BMJ.
    • “And the risk declines even more for women with known risk factors for these complications such as obesity, other health problems or prior delivery, researchers said.
    • “For those women, an epidural can reduce their risk of complications by 50%, compared to a 33% risk reduction in those without such factors.
    • “And women delivering preterm had a risk reduction of 47%, results show.”
  • and
    • “Researchers found that a questionnaire successfully identified patients with STIs who can be safely evaluated for penicillin allergy by skin test or by a two-step graded oral challenge, according to a study.
    • “Providers caring for clients with STIs are often faced with clients reporting a history of penicillin allergy (up to 15% of clients). Penicillin remains the drug of choice for the treatment of all stages of syphilis,” Rebecca A. Lillis, MD, associate professor at the Louisiana State University School of Medicine, told Healio.
    • “Ceftriaxone is the drug of choice for treatment of gonorrhea and often avoided in clients who report a penicillin allergy, resulting in suboptimal care,” she said.”
  • The National Institutes of Health announced,
    • “A team of researchers funded by the National Institutes of Health have generated the first complete chromosome sequences from non-human primates. Published in Nature(link is external), these sequences uncover remarkable variation between the Y chromosomes of different species, showing rapid evolution, in addition to revealing previously unstudied regions of great ape genomes. Since these primate species are the closest living relatives to humans, the new sequences can provide insights into human evolution.”

From the U.S. Healthcare business front,

  • Per Fierce Healthcare,
    • “A significant gap exists between health plans that have the highest consumer experience scores and those with the lowest, according to a new survey from J.D. Power.
    • “The consumer insights firm released its annual look at commercial health plans and found that overall satisfaction lands at a score of 595 out of 1,000 points, an increase of three points from 2023’s survey. However, the analysts found a 79-point gap between plans with the highest and lowest scores.
    • “Further, plans with the best consumer satisfaction ratings are getting better, while the lowest-performing plans are sliding. Scores at the highest performers increased by 20 points, while lower scores declined by eight points.
    • “In many cases, employer-sponsored health insurance is consumers’ primary window into the healthcare system,” said Christopher Lis, Ph.D., managing director of global healthcare intelligence at J.D. Power, in a press release. “Access to care, cost of care, chronic condition management—the central pillars of the consumer healthcare experience—are all heavily influenced by commercial health plans.”
  • and
    • “The proportion of hospitals meeting the Office of the National Coordinator for Health IT’s (ONC’s) bar for interoperability rose substantially from 2018 to 2023, though a focus on day-to-date data exchange will be necessary to fill some remaining gaps.
    • “According to a recent data brief from ONC, 7 in 10 nonfederal acute care hospitals reported either “routinely” or “sometimes” engaging in all four measured domains of electronic health information interoperability: sending data (92%), receiving data (87%), querying data from outside their organization (84%) and integrating outside data into their records without manual entry (78%).
    • “The 70% top line is an improvement from the 23% of 2014 and the 46% of 2018. Interoperability remained flat at 70% from 2022 to 2023, though the ONC noted that its surveys for the two years were fielded nearly back-to-back to catch up following pandemic polling delays.”
  • Beckers Payer Issues points out,
    • “UnitedHealth Group is running around 500 use-case applications for AI across the organization, CEO Andrew Witty told investors. 
    • “Speaking at a conference on May 29, Mr. Witty said some of the company’s AI efforts are “low-hanging” opportunities aimed at speeding up administrative processes. 
    • “It’s not Einstein opportunities,” he said. “These are relatively straightforward. Some of them are already underway. They play out in areas like speed, allowing call handlers to deal with issues faster than they used to.” 
    • “Heather Cianfrocco, CEO of Optum, told investors Optum’s AI efforts are focused in two areas. 
    • “One is administrative support, particularly for clinicians, giving clinicians time back at home or in the office,” Ms. Cianfrocco said. “The second area I would highlight is identifying disease progression, or emerging disease, faster.” 

 

Cybersecurity Saturday

From the cybersecurity policy front,

  • Cybersecurity Dive tells us,
    • “An HHS agency revealed a new cybersecurity program Monday [May 20, 2024,] that aims to better safeguard hospitals as the healthcare sector faces increasing cyber threats that can derail patient care. 
    • “The initiative, which comes out of the Advanced Research Projects Agency for Health, will invest more than $50 million to build a software suite that could automatically scan model hospital environments for vulnerabilities that could be exploited by hackers and quickly develop and deploy fixes.
    • “The project seeks to help hospitals keep their vast array of internet-connected devices up to date, preventing attacks and subsequent technology outages that can last for weeks and threaten patient safety.”
  • American Hospital News adds,
    • “The Universal PatchinG and Remediation for Autonomous DEfense (UPGRADE) program will proactively evaluate potential vulnerabilities by probing for weaknesses in software. When it detects a threat, a patch could be automatically developed, tested and deployed with minimal interruption to hospital devices. 
    • “We applaud HHS’ recognition of the unique challenges and systemic nature of vulnerability management in health care,” said John Riggi, AHA’s national advisor for cybersecurity and risk. “The research which will be empowered through the ARPA-H funding will yield technical solutions which should be applied strategically to help secure the entire sector. It is clear, health care is a critical infrastructure sector, which must not be left to defend itself on its own through uncoordinated and uneven capabilities. Continuing ransomware attacks on the health care sector represent an urgent national security, public health and safety issue. The UPGRADE program is an innovative and welcomed ‘whole of nation’ approach, which will combine the expertise of the health care sector and government experts.” 
  • Cybersecurity Dive informs us,
    • Providers are still looking for clarification on whether they’ll have to report or notify patients about data breaches stemming from the cyberattack against Change Healthcare earlier this year.
    • In a letter sent to HHS Secretary Xavier Becerra Monday [May 20, 2024], more than 50 organizations — including the American Medical Association, the College of Healthcare Information Management Executives and the American Health Information Management Association— urged the federal government to publicly confirm that Change could manage data breach reporting and notification requirements, since the technology firm and major claims processor experienced the breach. 
    • UnitedHealth Group, Change’s parent company, has previously said it would handle reporting for customers whose data may have been exposed — which could be a huge swath of Americans.
  • Bloomberg Law reports,
    • “Companies working with the US government may be required to start protecting their data and technology from attacks by quantum computers as soon as July.
    • “The National Institute for Standards and Technology, part of the Department of Commerce, will in July stipulate three types of encryption algorithms the agency deems sufficient for protecting data from quantum computers, setting an internationally-recognized standard aimed at helping organizations manage evolving cybersecurity threats. 
    • “The rollout of the standards will kick off “the transition to the next generation of cryptography,” White House deputy national security adviser Anne Neuberger told Bloomberg in Cambridge, England on Tuesday [May 21, 2024]. Breaking encryption not only threatens “national security secrets” but also the way we secure the internet, online payments and bank transactions, she added.”
  • The National Institute of Standards and Technology (NIST), announced on May 20, 2024,

From the cyber vulnerabilities and breaches front,

  • Cybersecurity Dive notes yesterday,
    • “On the eve of Memorial Day weekend, threat researchers and incident response teams are quietly preparing for the risk of malicious activity when staffing is minimal and millions of workers will be on the road. 
    • “Critical industries have faced a series of threats from criminal ransomware gangs or nation-state actors for much of 2024, and the unofficial summer kickoff weekend is a prime opportunity for malicious attacks. 
    • “We see attacks and attempted intrusions every day,” Scott Algeier, executive director of the IT-ISAC, said via email.
    • “While there is no specific threat information pointing to a Memorial Day event, “attackers are also aware of the calendar and know that security teams tend to operate with reduced staffing on weekends and holidays,” Algeier said.
    • “While there is no specific threat information pointing to a Memorial Day event, “attackers are also aware of the calendar and know that security teams tend to operate with reduced staffing on weekends and holidays,” Algeier said.”
  • HHS’s Health Sector Cybersecurity Coordination Center (HC3) has issued its April 2024 cybersecurity vulnerability bulletin.
    • In April 2024, vulnerabilities to the health sector have been released that require attention. This includes the monthly Patch Tuesday vulnerabilities released by several vendors on the second Tuesday of each month, along with mitigation steps and patches. Vulnerabilities for April are from Palo Alto, Ivanti, Microsoft, Google/Android, Apple, Mozilla, Cisco, SAP, VMWare, Adobe, Fortinet, and Atlassian. A vulnerability is given the classification of a zero-day when it is actively exploited with no fix available, or if it is publicly disclosed. HC3 recommends patching all vulnerabilities, with special consideration given to the risk management posture of the organization.
  • HC3 also issued a useful PowerPoint presentation titled “Business Email Compromise (BEC) & Healthcare.”
  • The Cybersecurity Infrastructure Security Administration added the following new known exploited vulnerabilities to its catalog:
  • Dark Reading reports yesterday that “Google Discovers Fourth Zero-Day in Less Than a Month; The tech company has rolled out fixes for a type confusion vulnerability that has already been exploited by malicious actors.”
  • Cyberscoop adds
    • “An aggressive, nebulous ring of young cybercriminals linked to a string of recent high-profile breaches is made up of approximately 1,000 people, a senior FBI official said Friday. 
    • “In remarks Friday at the cybercrime-focused Sleuthcon conference, Bryan Vorndran, assistant director of the FBI’s Cyber Division, described the group best known as Scattered Spider as a “very, very large, expansive, disbursed group of individuals,” many of whom don’t know each other directly. 
    • “Scattered Spider emanates from an online community known as “the Com.” The group is also tracked by cybersecurity firms as “0ktapus” or UNC3944, and Vorndran’s remarks provide the best number yet for the total size of the hacking crew.  
    • “Scattered Spider has breached a who’s-who of big-name companies, including the casino giant MGM Resorts and the identity management company Okta. Made up of mostly native English speakers in the United States and the United Kingdom, Scattered Spider is classified as a top three cybersecurity threat, alongside China and Russia’s foreign intelligence agency, Vorndran said.” 

From the cybersecurity defenses front,

  • Modern Healthcare lets us know
    • A recent string of massive healthcare cybersecurity breaches has put data security leaders on edge. 
    • Health system cybersecurity executives are looking at their biggest points of weakness in the aftermath of large-scale breaches at St. Louis-based health system AscensionUnitedHealth Group’s Change Healthcare and Chicago-based Lurie Children’s Hospital
    • Recent incidents have shined a light on some of the most significant vulnerabilities at health systems. Here are four of the biggest, according to experts.. 
      • Lack of Shared Organizational Goals
      • Third party Vendor Risks
      • Multi-factor Authentication Misses
      • Slow Response Time
  • Similarly MedCity News points out,
    • “During a fireside chat at MedCity News’ INVEST conference, Nitin Natarajan — deputy director at the Cybersecurity and Infrastructure Security Agency (CISA) — shared some key ideas that people need to understand about the current state of cybersecurity in the healthcare industry. For instance, he reminded us that things won’t get better overnight, and that cybersecurity requires an all-hands-on deck approach.”


 

Tuesday Tidbits

Photo by Patrick Fore on Unsplash

From Washington, DC

  • MedPage Today tells us,
    • Senators and experts on Tuesday examined the range of tools that brand-name drug manufacturers have used to keep generic and biosimilar competition at bay — from patent thickets and product hopping to “pay-for-delay” settlements — and wrestled with how to prevent such abuses.
    • “Too often the prices charged by Big Pharma do not reflect a scientific advancement,” argued Sen. Dick Durbin (D-Ill.), during a Tuesday hearing of the Senate Committee on the Judiciary. “Rather, they’re the result of skilled lawyers manipulating the patent system and skirting our nation’s competition laws.”
  • The Department of Health and Human Services announced,
    • “The Biden-Harris Administration is committed to lowering health care costs, promoting innovation, and making sure that taxpayer investments result in advancements in biomedical research that are accessible to everyone across the country.
    • “Today, the National Institutes of Health (NIH) issued a first of its kind draft policy proposal to promote equitable access to products stemming from NIH-owned inventions. By requiring organizations partnering with the NIH through patent license agreements to outline detailed plans for patient access to drugs, biologics, vaccines, or devices developed from NIH-owned inventions, we are accelerating how breakthroughs in medical research originating from the NIH’s Intramural Research Program can translate into affordable and sustainable solutions for patients across the country. NIH has released a request for information and welcomes public input to inform this new policy.”
  • The American Hospital News informs us,
    • “The Centers for Medicare & Medicaid Services May 21 announced that individuals now have the option to file an Emergency Medical Treatment and Labor Act complaint directly with the agency, in addition to the traditional process of contacting state survey agencies. The new form is the latest in a series of new resources from CMS to help educate the public about EMTALA.” 

From the public health and medical research front,

  • Beckers Hospital Review points out,
    • “The CDC is asking health officials in all 50 states to continue monitoring the prevalence of influenza as H5N1 bird flu infections among poultry and livestock increase and have begun to prompt concern over the possibility of human-to-human transmission, according to a news release shared with Becker’s.”The CDC is asking health officials in all 50 states to continue monitoring the prevalence of influenza as H5N1 bird flu infections among poultry and livestock increase and have begun to prompt concern over the possibility of human-to-human transmission, according to a news release shared with Becker’s.
    • “As of May 21, there has only been one confirmed human infection of the current H5N1 outbreak in a dairy farm employee in Texas, but no evidence of human-to-human transmission.”
  • KFF adds a report titled “Who is at Risk Amid the H5N1 Influenza Outbreak? Characteristics and Health Coverage of Animal Production Workers.”
  • The Blue Cross Blue Shield Association lets us know,
    • “Despite the explosion in demand for weight loss drugs known as GLP-1s, 58% of patients discontinue use before reaching a clinically meaningful health benefit. This is the key finding from new researchreleased by the Blue Cross Blue Shield Association (BCBSA) and conducted by Blue Health Intelligence® (BHI) based on data from nearly 170,000 commercial health plan members since the first FDA approval for a weight-loss GLP-1 in 2014.  
    • “When patients take medication, we want it to be safe and effective,” said Razia Hashmi MD, MPH, FAAFP, vice president of Clinical Affairs at BCBSA. “This study shows most people are unlikely to see lasting benefits.  Unfortunately, weight loss isn’t as simple as filling a prescription.”
    • “In the largest study using commercial data to date on this topic, BHI’s assessment also found that 30% of patients discontinued use of the medications within the first month. 
    • “This study underscores how much more we have to learn about these medications,” said Kim Keck, president and CEO of BCBSA. “The science behind these drugs is moving faster than our ability to truly understand which patients will benefit, how to sustain their success and how to pay for them. If we don’t get it right, we will drive up costs for everyone with little to show for it.” 
  • STAT News reports,
    • “Hundreds of genetic variants can nudge someone’s risk of breast cancer up or down or towards a particular subtype. The studies identifying those gene variants, though, have largely involved people with European ancestry and thus give a less accurate picture of breast cancer risk for people who are not white.
    • “That’s beginning to change. Last week, researchers published a genome-wide association study on breast cancer in roughly 40,000 people of African descent in Nature Genetics, marking a leap forward in scientists’ knowledge of breast cancer genetics in people of African ancestry.
    • “Before we started this study in 2016, there were just several thousand cases for Black Americans. It was a very small number,” said Wei Zheng, the study’s senior investigator and a cancer epidemiologist at Vanderbilt University. This study combined data from dozens of other studies and included genetic data for thousands of new participants, making it the largest combined breast cancer genetics study done with people with African ancestry.
    • “Specifically, the study compiled data from about 30 different studies investigating breast cancer in African or African American people. About 18,000 of them had breast cancer, while the other 22,000 were healthy controls, and investigators were able to scour their genetic data for specific variations that seemed closely related to breast cancer. The statistical power that comes with such numbers enabled the team to make two key advances.
    • “First, the team found 12 loci, or locations in the genome, that showed a significant association with breast cancer. Of those, the team identified variants of three genes that appear to increase the risk of triple negative breast cancer, one of the most aggressive subtypes. Since everyone has two copies or alleles of each gene, that means someone could have anywhere between one and six risk-related alleles of these three genes. Those who had all six risk-related alleles had roughly double the chance of getting triple negative breast cancer than those who only had three. * * *
    • “The other advance came when the researchers used the data to build a breast cancer risk prediction model for people with African ancestry. Such models take into account hundreds of different genetic variants that can slightly push breast cancer risk up, adding them all up into a polygenic risk score.”
  • The Wall Street Journal relates,
    • GSK’s experimental drug for asthma met its goals in the latest trial, moving a treatment with potential annual peak sales of more than 3 billion pounds ($3.81 billion) closer to market.
    • The British pharmaceutical company’s depemokimab drug reduced asthma attacks in late-stage trials for patients with severe eosinophilic asthma, a form of the disease caused by high levels of white blood cells, GSK said Tuesday.
    • Depemokimab could be the first approved drug to allow a long-term dosing interval, requiring only two injections a year. This would benefit patients exposed to multiple therapies, the company said.
    • GSK plans to submit the drug for approval for severe asthma in the U.S. in the second half of the year.
  • Per MedTech Dive,
    • “The Food and Drug Administration is seeking examples of artificial intelligence and machine learning models that can identify and predict freezing of gait events related to Parkinson’s disease. 
    • “Freezing of gait is a temporary loss of forward movement while walking. These episodes affect people’s quality of life and daily activities, but they can be difficult to measure because they often happen when patients are outside of a clinic or hospital setting. 
    • “By testing these models against its own data, the FDA hopes to better understand the ability of these technologies to provide digitally derived endpoints that could help with early disease detection and prevention or support treatment and care in the home.” 
  • From the U.S. healthcare business front,
  • Milliman tells us, “In 2024, the cost of healthcare for a hypothetical American family of four in a typical employer-sponsored health plan is $32,066, according to the Milliman Medical Index (MMI).”
  • The Wall Street Journal reports,
    • “National drugstore chains, once resistant to the retail apocalypse that swept across the U.S., are finally succumbing to competition from online shopping and discount stores.
    • “About 3,000 fewer drugstores were open for business at the start of this year compared with the same period in 2019, according to analytics company RetailStat, which tracks 15 pharmacy chains. 
    • CVS HealthWalgreens and Rite Aid have each closed hundreds of stores since the onset of the pandemic. Online shopping has been growing and offers customers a more convenient way to buy household staples. 
    • “Competition has also increased from discount retailers such as Walmart, grocers such as Aldi, and dollar stores, which all sell many of the same items at lower prices. The spread of beauty stores such as Sephora further siphoned customers from drugstore aisles. 
    • “Everybody’s gone after a component of their business,” said Henry Fonvielle, president of the real-estate company Rappaport.”
  • STAT News notes that “Reports of telehealth’s death have been greatly exaggerated.”
    • “Virtual care isn’t in trouble. What is in trouble are the aftermarket telehealth solutions that largely function as a virtual extension of our siloed, fragmented health care system. This specific application of virtual care, which we call Telehealth 1.0, has consistently failed to bring meaningful value to patients, clinicians, and purchasers.
    • “In that sense, its collapse is a welcome development. It’s a sign that the market discerns where the real value lies in virtual care, and it validates the evolution from transactional, one-off care to more sophisticated virtual-first models.”
  • Per Healthcare Dive,
    • “UnitedHealth-owned Optum Rx, one of the biggest pharmacy benefit managers in the U.S., is launching a new drug pricing model next year meant to make payers’ spending on pharmaceuticals more predictable.
    • “The model, called Clear Trend Guarantee, combines costs that used to be separated out, including retail pharmacy, home delivery, specialty drug and rebates, into one single per-member price, according to a Monday release.
    • “Clear Trend is value-based, meaning Optum Rx will share in any savings tied to patient outcomes created in the model.”
  • Per Fierce Healthcare,
    • “The Purchaser Business Group on Health has unveiled a new purchasing agreement that aims to improve maternal health.”The Purchaser Business Group on Health has unveiled a new purchasing agreement that aims to improve maternal health.
    • “Benefits experts at retail giant Walmart and technology company Qualcomm led the initiative as co-chairs, with the goal of establishing “a collective commitment among employers and public purchasers of healthcare” to address maternal health and birth equity, according to an announcement from PBGH.
    • “The agreement centers on five key principles: deploying evidence-based, coordinated models to ensure high-quality care; ensuring timely access; promoting equitable care built on cultural humility; transparency and accountability; and value-based care.
    • “It also establishes a consensus for employers and public healthcare purchasers as to what high-quality and high-value maternity care is and outlines expectations for both insurers and providers to follow to meet that bar.”
  • Per BioPharma Dive,
    • “A decade ago, as British drugmaker AstraZeneca fought off a hostile takeover bid by Pfizer, CEO Pascal Soriot made a big promise: The company, he said, would boost sales by nearly three-quarters to reach $45 billion by 2023.”A decade ago, as British drugmaker AstraZeneca fought off a hostile takeover bid by Pfizer, CEO Pascal Soriot made a big promise: The company, he said, would boost sales by nearly three-quarters to reach $45 billion by 2023.
    • “With that goal now successfully met, Soriot on Tuesday announced a plan to push the company even higher, setting a target of $80 billion in annual sales by 2030. A slate of new medicines in metabolic and autoimmune disease headline the plan, which also involves sustaining existing businesses in respiratory disorders and cancer.
  • Beckers Hospital Review calls attention to “Fortune and PINC AI’s “15 Top Health Systems” list released May 21.”
  • McKinsey & Company discusses what’s new in consumer wellness trends.

Monday Roundup

Photo by Sven Read on Unsplash

From Washington, DC,

  • Healthcare Dive reports,
    • “The Senate Finance Committee is considering policies to create more stability in Medicare payments for doctors, an update cheered by physician groups that have long lobbied for reforming how the insurance program reimburses clinicians.
    • “Committee Chair Ron Wyden, D-Ore., and Ranking Member Mike Crapo, R-Idaho, released the white paper on Friday proposing Medicare adjust payments to account for inflation, a key goal for physicians that argue government reimbursement hasn’t kept pace with rising costs.
    • “The Senate Finance Committee is also interested in exploring ways to use incentives to increase provider participation in alternative payment models, and potential changes to Medicare’s budget neutrality requirements, which require the CMS to cut payment to certain specialties to raise it for others.”
  • Fedweek tells us
    • The Senate Homeland Security and Governmental Affairs Committee has passed:
      • S-4035, to require that when FEHB enrollees seek to add a family member to their coverage based on a qualifying life event that the event has occurred and that the individual is eligible for coverage; require the OPM to consider coverage of ineligible individuals when conducting FEHB fraud risk assessments; require a comprehensive audit be conducted of family members currently enrolled; and require OPM to disenroll any ineligible individual found to be receiving FEHB coverage.
  • STAT News lets us know,
    • “Executives from the three major pharmacy benefit manager companies have been invited to testify before the House Committee on Oversight and Accountability next month, four sources familiar with the planning told STAT.
    • “Executives from Optum, CVS Caremark, and Express Scripts, owned by Cigna, were asked to testify before the panel on June 4. * * *
    • “Lawmakers are next eyeing action in December, when a number of health care programs and authorities are expiring.
    • “Ipsita Smolinski, founder and managing director of the consulting firm Capitol Street, said she believes some PBM reforms will pass in December, but not ones that are detrimental to the industry’s business model.
    • “They are largely Medicare and Medicaid, and provide minimal system savings,” she said.”
  • The U.S. Office of Personnel Management announced,
    • “Today, the U.S. Office of Personnel Management (OPM) highlights key actions taken to recruit, hire, and train AI and AI-related talent into the federal government. OPM’s efforts support the AI in Government Act of 2020 and President Biden’s landmark Executive Order on Safe, Secure, and Trustworthy AI.   
    • “Recruiting AI talent ensures the federal government can use the latest technology to tackle global challenges, improve government services, and better support the American public,” said OPM Acting Director Rob Shriver. “As a strategic partner to federal agencies, OPM has taken a number of actions that will set agencies up to compete for top talent in this critical field now and in the future.” 

From the public health and medical research front,

  • The Washington Post and Consumer Reports tell us about “Heart checkups you should have and those you can probably skip.”
  • Per MedTech Dive,
    • “Physician enthusiasm for new pulsed field ablation systems suggests the treatment will be rapidly adopted, to the benefit of device makers bringing the products to market, said analysts who attended the Heart Rhythm Society’s (HRS) annual meeting over the weekend.
    • “Talk about pulsed field ablation (PFA), a catheter-based cardiac ablation technique to treat atrial fibrillation (AFib), dominated the meeting in Boston.
    • “The amount of data and discussions on pulsed field ablation (PFA) was almost overwhelming, with late-breaking data presentations packed by physicians,” Citi Research analyst Joanne Wuensch said in a report to clients Sunday. * * *
    • “PFA is seen as a potentially safer alternative to traditional radiofrequency and cryoablation to treat AFib, the most common form of irregular heart rhythm. Shorter operating times are viewed as another advantage.
    • “Antiarrhythmic drugs are currently recommended as the first treatment for AFib but are associated with adverse events, according to the HRS. PFA differs from thermal ablation to disable cardiac cells by using electricity instead of heat or extreme cold.”
  • Medscape discusses how artificial intelligence fits into clinical practice.
  • MedPage Today informs us,
    • “The FDA approved the first interchangeable biosimilars to aflibercept (Eylea) to treat macular degeneration, according to an announcementopens in a new tab or window from the agency.
    • “As interchangeable biosimilars, aflibercept-jbvf (Yesafili) and aflibercept-yszy (Opuviz) have the same approved indications as the reference product: diabetic macular edema, diabetic retinopathy, macular edema following retinal vein occlusion, and neovascular age-related macular degeneration (AMD). Like reference aflibercept, the two biosimilars are administered via intravitreal injection.
    • “The FDA pointed out in the announcement that a biosimilar “has no clinically meaningful differences” from the reference product, which means that patients “can expect the same safety and effectiveness from the biosimilar as they would the reference product.” Interchangeability means that the biosimilar met other requirements and may be substituted for the reference product without consulting the prescriber.”

From the U.S. healthcare business front,

  • STAT News relates,
    • “Americans, especially Medicare beneficiaries, are getting more medical care these days. Demand from aging Baby Boomers is keeping people in doctor’s offices, and health care providers are continuing to build capacity post-Covid.
    • “Those trends — the same ones that tanked health insurance stocks a few weeks ago — made a strong mark on nonprofit health systems’ first quarter financial reports. STAT took a look at 20 large nonprofit health systems and found that all but four reported higher operating and net margins in the first three months of 2024 compared with the same period in 2023. Hospitals are seeing more patients and cutting down on the expensive contract labor they relied on during the Covid-19 pandemic. And they’re seeing strong investment gains on the non-operating side.”
  • The Wall Street Journal reports,
    • Hims & Hers Health shares soared after the company said it would add injectable weight-loss drugs to its platform, granting access to the popular treatments to its telehealth patients.
    • “The company on Monday said it now offers access to GLP-1 injections in addition to its oral weight-loss treatments, giving users a broader option to choose from. It will be providing a compounded form of the injections that use the same active ingredients as the popular drugs Ozempic and Wegovy, which are facing shortages that are limiting access for some patients.
    • “The price for compounded GLP-1 injections will start at $199 a month. Its oral medication offering starts at $79 a month. Both are not available in all states.
    • “Hims & Hers said it plans to make branded GLP-1 options available to customers once consistent supply is available through the pharmacies’ wholesaler.”
  • Per Healthcare Dive,
    • “Steward offered specifics on how it intends to auction off its assets in motions filed in bankruptcy court last week, including a timeline for selling its hospitals and physician group as well as contingency plans, including possible closures, if the assets fail to lure qualified bidders.
    • “The physician-owned healthcare network, which filed for Chapter 11 bankruptcy earlier this month, operates 31 hospitals and a physician group, Stewardship Health, in Massachusetts, Arizona, Ohio, Pennsylvania, Arkansas, Louisiana, Texas and Florida. 
    • “All of its assets are up for sale — and Steward is looking to sell quickly, according to the filings.
    • “Steward says it is in advanced discussions with Optum and hopes to finalize an agreement in the near-term for the company to serve as the stalking horse bidder for its physician group, Stewardship Health — the initial bid that sets the floor price during auction.” 
  • NBC News notes,
    • “Many of the ADHD medication shortages that have plagued the U.S. for the last two years have now been resolved, the Food and Drug Administration says. Yet some doctors and patients report they are still struggling to get prescriptions filled.
    • “Dr. Royce Lee, a psychiatrist at the University of Chicago Medicine, said supply has gotten better but it’s still an issue for about a third of the patients he writes prescriptions for. This often means he still has to call around to pharmacies to see if they have the medications in stock, switch patients to different drugs, and deal with insurance companies to confirm coverage.
    • “I do see signs of the shortages easing up,” Lee said. “But there are still enough shortages that every day we’re having to put in a little bit of work for prescriptions that need to be changed or hunted down.”
    • “I think a lot of people are still not getting their treatments,” he added.”

Friday Factoids

Photo by Sincerely Media on Unsplash

From Washington, DC

  • Govexec tells us,
    • “The Office of Personnel Management on Thursday introduced a new form of paid leave designed for federal workers to use in connection with instances of domestic violence or other sexual or relationship-based trauma.
    • “In a memo to agency heads, acting OPM Director Rob Shriver said that although the federal government’s paid leave system “was not constructed with concepts of safe leave in mind,” the Biden administration is committed to protecting feds who have undergone relationship-based trauma and their families. * * *
    • “According to a new fact sheet on OPM’s website, the new safe leave will fall into a series of pre-existing leave categories, depending on what the federal employee intends to do while on leave.”
  • The Census Bureau announced,
    • “While the nation’s fastest-growing cities continue to be in Sun Belt states, new population estimates show that some of the top gainers are now on the outskirts of metropolitan areas or in rural areas.
    • “Today’s release of U.S. Census Bureau July 1, 2023, population estimates for cities and towns reveals geographic shifts in population growth compared to pre-pandemic July 1, 2019, estimates.
    • “The estimates also show that, on average, many small and midsize U.S. cities with populations under 50,000 saw relatively higher growth rates in 2023 than in 2019 before the pandemic hit while large cities generally grew at slower rates.
    • “Overall, the most populous cities continued to return to pre-pandemic trends thanks to increased growth rates and smaller population declines.”

From the public health and medical research front,

  • The Centers for Disease Control lets us know today,
    • “The amount of respiratory illness (fever plus cough or sore throat) causing people to seek healthcare is low nationally. This week, no jurisdictions experienced moderate, high, or very high activity.
    • “Nationally, emergency department visits with diagnosed COVID-19, influenza, and RSV are at low levels.
    • “Nationally, influenza test positivity decreased and RSV and COVID-19 test positivity remained stable at low levels compared to the previous week.
    • “Nationally, the COVID-19 wastewater viral activity level, which reflects both symptomatic and asymptomatic infections, is minimal.”
  • CNN reports,
    • “Laboratory tests by the US Department of Agriculture haven’t found any H5N1 bird flu virus in raw beef, but they are a good reminder why eating rare hamburgers can be risky.”Laboratory tests by the US Department of Agriculture haven’t found any H5N1 bird flu virus in raw beef, but they are a good reminder why eating rare hamburgers can be risky.
    • “As part of a suite of tests conducted to check safe food handling advice after the detection of H5N1 bird flu virus in dairy cattle, the USDA recently mixed a substitute virus into ground beef and then cooked patties at varying times and temperatures.
    • “Researchers found none of the virus in hamburgers cooked to 145 degrees, roughly the temperature of a medium burger, or well-done burgers cooked to 160 degrees. They did, however, find some live virus in patties cooked to 120 degrees or rare, although the virus was present “at much, much reduced levels,” said Eric Deeble, acting senior adviser for highly pathogenic avian influenza at the USDA.
    • “Whether that small amount of virus could make someone sick is still an unknown.
    • “The USDA already advises consumers to cook ground beef to an internal temperature of 160 degrees, as measured with a food thermometer, to avoid infections from bacteria such as salmonella and E. coli, he noted.
    • “I don’t think that anybody needs to change any of the safe food handling or safe cooking practices that are already recommended,” Deeble said.”
  • BioPharma Dive lets us know,
    • “New data from two late-stage studies of an experimental Bayer drug show it reduced the frequency and severity of common symptoms of menopause, supporting the company’s case for seeking regulatory approval.
    • “The results were disclosed by Bayer Thursday and will be presented at this year’s annual meeting of the American College of Obstetricians and Gynecologists in San Francisco.
    • “Bayer shared the trials’ success in January, but didn’t reveal specific findings. The company also announced positive results from a third Phase 3 study in March, when it confirmed plans to file for marketing authorization of the drug.
    • “Known as elinzanetant, Bayer’s drug would, if approved, compete with a medicine from Astellas called Veozah, which is approved in the U.S. to treat moderate-to-severe vasomotor symptoms caused by menopause.”
  • The New York Times reports,
    • “When a patient with a severe traumatic brain injury is comatose, in intensive care, unresponsive and hooked up to a ventilator, but not brain-dead, when is the time to withdraw life support? A small study on the fates of people in such situations suggests that doctors and patients’ families may make better decisions if they wait even a few days longer than usual.
    • “Often, a doctor sits down with family members within 72 hours of the patient’s admission to intensive care to discuss the patient’s prognosis, and whether they want to keep their loved one alive, or to remove life support.
    • “Experts say that many doctors would describe the outlook as grim — most likely death or severe disability. Reported outcomes of patients who had severe traumatic brain injuries show that most times the decision is to remove life support. The patient dies.
    • “The researchers behind the new study say that their limited data suggests that doctors’ predictions so soon after the injury frequently are wrong.
    • The study, published Monday in Journal of Neurotrauma, used a national database that included 1,392 traumatic brain injury patients.”
  • The Wall Street Journal points out that “A ‘Digital Twin’ of Your Heart Lets Doctors Test Treatments Before Surgery. Researchers create digital replicas of individual patients’ organs using data from exams and wearable devices: ‘You can run an infinite number of experiments’.”
    • “Kristin Myers, a mechanical engineering professor at New York’s Columbia University, is making digital copies of women’s uteruses and cervixes, hoping this can help in determining how a pregnancy will go. To do this, Myers uses an ultrasound to create 3-D computational models as part of an effort to someday solve the problem of preterm births. 
    • “The idea of digital twins in health is new,” she says. “We can offer better diagnoses. You can run an infinite number of experiments.”  
    • “At the National Cancer Institute, Emily Greenspan, a program director in the informatics and data science program, envisions a novel way to treat oncology patients. Instead of trying a drug and hoping it works, doctors would create a digital twin of the patient to predict how the disease would respond to a certain drug. 
    • “The institute has been working on creating virtual twins for best treatments of lung cancer, for instance. In the next five years the technology will likely become part of clinical decision-making, Greenspan says. 
    • “Predicting the best treatments and screening, these are blue-sky visions,” she said. “There is a lot of foundational research that’s needed.”
  • Amazing.

From the U.S. healthcare business front,

  • Beckers Payer Issues informs us,
    • “Employer adoption of ICHRAs is up 29% since 2023, according to a May 16 report from the HRA Council.
    • “ICHRAs, or individual coverage health reimbursement arrangements, allow employers to offer a defined tax-advantaged contribution used to reimburse premiums for an individual health plan purchased by an employee on their state’s ACA exchange.
    • Key numbers:
      • “1. ICHRA adoption grew 29% year over year between 2023 and 2024.
      • “2. ICHRAs grew 84% among employers with 50 or more employees.
      • “3. Among employers surveyed, 83% were not able to offer health benefits until they offered an ICHRA or Qualifying Small Employer HRA. 17% of employers switched from traditional group coverage.
      • “4. The number of employees offered a defined contribution health benefit now exceeds 200,000, which does not include dependents — some estimates have said more than 500,000 people are enrolled.”
  • Per Fierce Healthcare,
    • “For women who experience musculoskeletal (MSK) and pelvic health issues, the decline in estrogen during menopause can not only worsen existing symptoms but also trigger new joint, muscle and pelvic health issues.
    • “Research shows 71% of women who go through menopause experience joint and muscle pain.
    • “Digital health company Hinge Health expanded its movement- and behavior-based care to help women alleviate common menopause symptoms such as hot flashes, joint and muscle pain and pelvic floor disorders.             
    • “As part of the new movement-based menopause support offering, a physical therapist-led care team provides individuals with personalized exercise therapy and behavior-based lifestyle modifications. The aim is to alleviate joint and muscle pain, maintain muscle mass and bone density, and address vasomotor symptoms like hot flashes and mood swings, according to the company.
    • “Regular physical activity can reduce the frequency and severity of some disruptive symptoms that occur with menopause,” said Tamara Grisales, M.D., an urogynecologist at Hinge Health. “Exercise-focused programs complement traditional treatments like Hormone Replacement Therapy, providing a holistic approach to managing menopause.”
  • Beckers Hospital Review notes,
    • “Walgreens will sell a low-cost, over-the-counter version of the opioid overdose antidote naloxone, the company said May 15. 
    • “The Walgreens-brand nasal spray medication will retail for $34.99, a lower price than other branded versions of the drug (Narcan) sold by the retailer. The naloxone spray is currently available online and will hit store shelves nationwide by the end of the month.”

Cybersecurity Saturday

From the cybersecurity policy front,

  • Cybersecurity Dive reports,
    • “The Biden administration plans to pursue a liability framework to hold the software industry accountable for insecure software, according to administration officials and documents released by the Office of the National Cyber Director this week. 
    • “Federal officials said they have taken steps toward a long-stated goal of shifting the security burden away from technology users and onto the industry. 
    • “The administration wants to pursue a plan to create incentives that will help enable long-term investment in cybersecurity and resilience, Nick Leiserson, assistant national cyber director for cyber policy and programs, said during a panel Monday [May 6] at the RSA Conference in San Francisco.
    • “Leiserson cautioned the objective was not to create a liability framework for the purposes of opening up the software industry to lawsuits.
    • “That’s not the point,” Leiserson said during the panel discussion. “The point is to secure investments in secure software development.”
  • and
    • “The Biden administration plans to launch aggressive actions to enhance cyber resilience across key critical infrastructure sectors, including the healthcare and water sectors, which were the targets of significant threat activity in recent months, according to a report released Tuesday by the Office of the National Cyber Director.
    • “The U.S. wants to speed the flow of intelligence sharing and facilitate closer cooperation with the private sector. The administration also plans to enhance its ability to proactively disrupt threat activity and take down malicious actors. 
    • “We are in the midst of a fundamental transformation in our nation’s cybersecurity,” National Cyber Director Harry Coker Jr., said in a statement. “We have made progress in realizing an affirmative vision for a safe, prosperous and equitable digital future, but the threats we face remain daunting.”
  • In that regard, Govinfosecurity adds,
    • “As the Department of Health and Human Services works on a proposed update to the HIPAA Security Rule this year, regulators are also ratcheting up enforcement efforts – including resuming long-dormant HITECH Act HIPAA audits, said Melanie Fontes Rainer, director of HHS’ Office for Civil Rights. * * *
    • “HHS OCR plans by the end of the year to publish a proposed update to the HIPAA Security Rule to better reflect the evolution of technology and healthcare delivery that’s occurred over the last two decades since the regulations were first issued, she said.
    • “The beauty of the HIPAA Security Rule is that it’s 20 years old – it is technology-neutral, and it’s scalable. So we’re still able to use it and enforce the law vigorously,” she said in a video interview with Information Security Media Group. 
    • “But at the same time, “the downside of the HIPAA Security Rule is that it’s 20 years old and doesn’t reflect how we receive healthcare today,” she adds. “That’s why we’re taking a look at it to make sure we’re building into it practices – like end-to-end encryption – and things like that.”
  • Cyberscoop reports,
    • The U.S. and British governments on Tuesday [May 7] identified Dmitry Yuryevich Khoroshev as the leader, developer and administrator of the LockBit ransomware operation, one of the most prolific and profitable cybercriminal syndicates in recent years.
    • Khoroshev, a Russian national, has been LockBit’s main administrator and developer since at least September 2019 continuing through the present, U.S. federal prosecutors said in an indictment unsealed Tuesday. Since its inception, LockBit has been used in attacks against more than 2,500 targets in at least 120 countries, leading to at least $500 million in ransom payments to Khoroshev and his affiliates and “billions of dollars in broader losses, such as revenue, incident response, and recovery,” the Department of Justice said in a statement.
  • Dark Reading points out that at the RSA Conference “CISA courted the private sector to get behind CIRCIA Reporting Rules. New regulations will require the private sector to turn over incident data to CISA within three days or face enforcement. Here’s how the agency is presenting this as a benefit to the entire private sector.”

From the cyber breaches and vulnerabilities front,

  • Cyberscoop reports,
    • Ascension, a health care system with 140 hospitals in 19 states and Washington, D.C., and tens of thousands of employees and affiliated providers, detected a “cyber security event” Wednesday [May 8] that has caused a “disruption to clinical operations,” the company said
    • Major impacts to medical services have been reported in multiple states, including KansasFlorida and Michigan, including some patients being diverted to other hospitals and lack of access to digital records.
    • “We have to write everything on paper,” one physician in Michigan told the Detroit Free Press. “It’s like the 1980s or 1990s.”
  • Dark Reading adds,
    • “The provider has temporarily paused non-emergency medical procedures and appointments, and some hospitals are diverting emergency medical services. Patients were advised to bring relevant medical information to appointments due to system limitations.
    • “We are actively supporting our ministries as they continue to provide safe, patient care with established downtime protocols and procedures,” a company statement said. “It is expected that we will be utilizing downtime procedures for some time.”
    • “The organization has tapped incident response help from Mandiant for investigation and remediation efforts. It is unknown if any patient data was exposed in the attack.
    • “We are working to fully investigate what information, if any, may have been affected by the situation,” Ascension said. “Should we determine that any sensitive information was affected, we will notify and support those individuals in accordance with all relevant regulatory and legal guidelines.”
  • Cybersecurity Dive tells us,
    • “The FBI and Cybersecurity and Infrastructure Security Agency urged software companies to eliminate directory traversal vulnerabilities from their products, citing a rise in attacks against critical industries, including hospitals and school operations, in a secure by design alert released Thursday
    • “The agencies are seeking industry action following two recent campaigns where threat groups engaged in extensive exploitation activity. The agencies referenced a path traversal vulnerability in ConnectWise ScreenConnect, listed as CVE-2024-1708, and a vulnerability in the file upload functionality of Cisco AppDynamics Controller, listed as CVE-2024-20345.
    • “In total, directory traversal or path traversal vulnerabilities were identified in 55 different cases listed on CISA’s Known Exploited Vulnerabilities catalog, according to the alert.”

From the ransomware front,

  • American Hospital Association News informs us,
    • “The Federal Bureau of Investigation, Cybersecurity and Infrastructure Security Agency, Department of Health and Human Services, and Multi-State Information Sharing and Analysis Center May 10 releasedjoint cybersecurity advisory to provide information on Black Basta, a ransomware variant whose actors have encrypted and stolen data from at least 12 out of 16 critical infrastructure sectors, including the health care and public health sector.”
  • Bleeping Computer’s The Week in Ransomware is back this week.

From the cybersecurity defenses front,

  • Cybersecurity Dive calls attention to the fact that “Officials see a real change in Microsoft’s security plans: financial accountability. CISA Director Jen Easterly pointed to Microsoft’s decision to link security to executive compensation as a meaningful signal of its priorities.”
  • Tech Target offers “five tips for building a cybersecurity culture at your company.”
  • Dark Reading considers the future path of CISOs while the ISACA Blog notes “A Better Path Forward for AI By Addressing Training, Governance and Risk Gaps.”
  • Finally, SC Media dives into the cybersecurity insurance market.