Close Menu

    Subscribe to Updates

    Get the latest tech news from Tallwire.

      What's Hot

      Pro-Iran Influence Campaigns Deploy AI To Shape Trump-Era War Narrative

      April 21, 2026

      Workers Split As Artificial Intelligence Adoption Creates Cultural And Economic Divide

      April 21, 2026

      Amazon Targets Satellite Internet Expansion With Multibillion-Dollar Launch Deal

      April 21, 2026
      Facebook X (Twitter) Instagram
      • Tech
      • AI
      • Get In Touch
      Facebook X (Twitter) LinkedIn
      TallwireTallwire
      • Tech

        Amazon Targets Satellite Internet Expansion With Multibillion-Dollar Launch Deal

        April 21, 2026

        California Startup Targets Power Grid Bottlenecks With Rapid-Deploy Energy Systems

        April 20, 2026

        The Race To Open AI’s Black Box Raises New Questions About Control And Trust

        April 20, 2026

        Ford’s Electric Vehicle Shake-Up Signals Strategic Retreat and Reset

        April 19, 2026

        Jagged Intelligence Challenges Simplistic Claims About Artificial Intelligence Supremacy

        April 19, 2026
      • AI

        Workers Split As Artificial Intelligence Adoption Creates Cultural And Economic Divide

        April 21, 2026

        Pro-Iran Influence Campaigns Deploy AI To Shape Trump-Era War Narrative

        April 21, 2026

        Hollywood Editors Gain AI-Powered Edge With New Google-Avid Integration

        April 20, 2026

        Virtual Reality Emerges as a Tool to Combat Elder Isolation

        April 20, 2026

        OpenAI Expands Cybersecurity AI Capabilities Amid Intensifying Tech Arms Race

        April 20, 2026
      • Security

        Pro-Iran Influence Campaigns Deploy AI To Shape Trump-Era War Narrative

        April 21, 2026

        OpenAI Expands Cybersecurity AI Capabilities Amid Intensifying Tech Arms Race

        April 20, 2026

        Global Financial Leaders Warn Advanced AI Could Expose Banking System To Cyber Threats

        April 17, 2026

        Anthropic Code Leak Raises Questions About AI Security and Industry Oversight

        April 8, 2026

        DeFi Platform Drift Halts Operations After Multi-Million Dollar Crypto Hack

        April 7, 2026
      • Health

        Meta Pulls Controversial Recruitment Ads Targeting Social Media Addiction

        April 18, 2026

        Landmark Verdict Fuels New Legal Battle Over Social Media’s Impact on Teen Boys

        April 18, 2026

        New Campaign Highlights Dangers of Screen Time, Urges Return to Active Childhoods

        April 18, 2026

        European Crackdown Targets Social Media’s Impact on Children

        April 8, 2026

        AI Chatbots Draw Scrutiny As Teens Engage In Intimate Roleplay And Emotional Dependency

        April 8, 2026
      • Science

        California Startup Targets Power Grid Bottlenecks With Rapid-Deploy Energy Systems

        April 20, 2026

        The Race To Open AI’s Black Box Raises New Questions About Control And Trust

        April 20, 2026

        Gen Z’s Rising Distrust Of Artificial Intelligence Signals Cultural And Economic Unease

        April 19, 2026

        Starlink Outage Reveals Military Dependence on SpaceX

        April 16, 2026

        Amazon Buys Satellite Company Globalstar- It’s About Control of Space-Based Connectivity

        April 15, 2026
      • Tech

        Man Accused Of Attacking AI Executive’s Home Had Broader Target List

        April 20, 2026

        Musk’s xAI Challenges Colorado AI Law Over Free Speech Concerns

        April 19, 2026

        Starlink Outage Reveals Military Dependence on SpaceX

        April 16, 2026

        Peter Thiel’s Bold Ag-Tech Gamble Signals High-Tech Disruption of Traditional Ranching

        April 6, 2026

        Zuckerberg Quietly Offers Musk Support As Tech Titans Align Around Government Power

        April 4, 2026
      TallwireTallwire
      Home»Tech»Weak Email Security Settings on Microsoft 365 Drive Surge in Healthcare Data Breaches
      Tech

      Weak Email Security Settings on Microsoft 365 Drive Surge in Healthcare Data Breaches

      Updated:February 21, 20263 Mins Read
      Facebook Twitter Pinterest LinkedIn Tumblr Email
      Weak Email Security Settings on Microsoft 365 Drive Surge in Healthcare Data Breaches
      Weak Email Security Settings on Microsoft 365 Drive Surge in Healthcare Data Breaches
      Share
      Facebook Twitter LinkedIn Pinterest Email

      Healthcare organizations are facing a growing wave of email-related security failures, with Microsoft 365 repeatedly identified as a major weak link. According to a recent IT Pro–Paubox report, 52% of healthcare email breaches in the first half of 2025 involved Microsoft 365, up from 43% in 2024. In that same period, 107 attacks exposed over 1.6 million patient records, with an average of nearly 16,000 records breached per incident. Compounding the issue, 79% of breached organizations were found to have ineffective DMARC protection (up from 65%), many lacked robust phishing‐reporting among staff (only ~5% of phishing attacks are even reported), and too many depend chiefly on human vigilance rather than resilient technical configuration. 

      Sources: IT Pro, PauBox.com

      Key Takeaway Points

      – Microsoft 365 is increasingly implicated in healthcare email breaches—over half of incidents in early-2025—and failure is often due to poor setup/configuration rather than the inherent defects of the platform itself.

      – Email authentication protocols (DMARC, SPF, DKIM) are frequently misconfigured or insufficiently enforced; a large majority of breached domains have weak DMARC settings.

      – Human and operational factors—such as lack of reporting, bypassing secure tools, understaffed security teams, and overreliance on user behavior—remain central vulnerabilities.

      In-Depth

      Healthcare data security remains under siege, and recent reports confirm that the weakest link is often not the size of the breach, but the basic email configurations and practices institutions rely on.

      The 2025 mid-year healthcare email security analysis by Paubox reveals that in just the first half of the year, 107 email-related breaches compromised more than 1.6 million patient records—an average of nearly 16,000 records per breach. Microsoft 365 accounted for 52% of those compromises, up from 43% in the previous year. Far from being a problem unique to smaller providers, this is happening across organizations large and small. 

      The root causes are less about cutting-edge malware or zero-day exploits, and more about misconfigured security settings and gaps in foundational protections. For example, DMARC—an email authentication standard that helps block spoofed or malicious messages—was found ineffective or too loosely set up (monitor-only) in nearly four in five breached organizations. Compounding the vulnerability, staff often bypass secure message systems, and very few phishing attacks are reported, leaving malicious messages undetected until it’s too late. 

      Financial stakes for these failures are huge. Healthcare breaches not only risk patient privacy and safety but carry steep regulatory penalties and reputational harm. The cost per breach can run into the tens of millions. And while premium email security services (like Mimecast, Proofpoint, Barracuda) are involved in some breaches, their presence isn’t sufficient shield—what matters more is ongoing enforcement, correct setup, default protections, and reducing reliance on human vigilance. 

      To prevent further escalation, healthcare organizations must shift mindset: email security cannot be “good enough.” Institutions need to enforce DMARC/SPF/DKIM correctly (not in passive or monitor modes), automate secure defaults (such as automatic encryption), mandate reporting of phishing from staff, and ensure third-party vendors are held to same standards. Technical defenses must be backed by operational discipline: regular audits, employee training, properly staffed security teams, and continuous monitoring. It’s only by combining strong tools with strong practices that healthcare providers can stem the tide of email‐based breaches.

      Microsoft
      Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
      Previous ArticleWaymo Rolls Out ‘Waymo for Business’ to Bring Robotaxis Into the Corporate Realm
      Next Article Weaponized Desktop Shortcuts: APT36 Strikes Indian Government Agencies

      Related Posts

      Amazon Targets Satellite Internet Expansion With Multibillion-Dollar Launch Deal

      April 21, 2026

      California Startup Targets Power Grid Bottlenecks With Rapid-Deploy Energy Systems

      April 20, 2026

      The Race To Open AI’s Black Box Raises New Questions About Control And Trust

      April 20, 2026

      Ford’s Electric Vehicle Shake-Up Signals Strategic Retreat and Reset

      April 19, 2026
      Add A Comment
      Leave A Reply Cancel Reply

      Editors Picks

      Amazon Targets Satellite Internet Expansion With Multibillion-Dollar Launch Deal

      April 21, 2026

      California Startup Targets Power Grid Bottlenecks With Rapid-Deploy Energy Systems

      April 20, 2026

      The Race To Open AI’s Black Box Raises New Questions About Control And Trust

      April 20, 2026

      Ford’s Electric Vehicle Shake-Up Signals Strategic Retreat and Reset

      April 19, 2026
      Popular Topics
      Software Satellite Satya Nadella Samsung SpaceX Series A Startup Series B UAE Tech Tesla Viral spotlight Sundar Pichai Tim Cook starlink Taiwan Tech Tesla Cybertruck Space trending Stocks
      Major Tech Companies
      • Apple News
      • Google News
      • Meta News
      • Microsoft News
      • Amazon News
      • Samsung News
      • Nvidia News
      • OpenAI News
      • Tesla News
      • AMD News
      • Anthropic News
      • Elbit News
      AI & Emerging Tech
      • AI Regulation News
      • AI Safety News
      • AI Adoption
      • Quantum Computing News
      • Robotics News
      Key People
      • Sam Altman News
      • Jensen Huang News
      • Elon Musk News
      • Mark Zuckerberg News
      • Sundar Pichai News
      • Tim Cook News
      • Satya Nadella News
      • Mustafa Suleyman News
      Global Tech & Policy
      • Israel Tech News
      • India Tech News
      • Taiwan Tech News
      • UAE Tech News
      Startups & Emerging Tech
      • Series A News
      • Series B News
      • Startup News
      Tallwire
      Facebook X (Twitter) LinkedIn Threads Instagram RSS
      • Tech
      • Entertainment
      • Business
      • Government
      • Academia
      • Transportation
      • Legal
      • Press Kit
      © 2026 Tallwire. Optimized by ARMOUR Digital Marketing Agency.

      Type above and press Enter to search. Press Esc to cancel.