Monthly Newsletter – July 2026

July Newsletter features include:
European Summit: Early Bird Pricing, Post-Summit Excursion Opportunity
Recent Regional Workshop Photos
Fall Americas Summit: Call for Papers closes July 10th
New Resources: Claude Mythos, Managing Third Party IAM, Human Risk Management, and New Vulnerabilities
Upcoming Workshops and Webinars
Read or download the PDF with interactive links:
2026 Health-ISAC European Summit – Security Cove | October 12-16, 2026 | Crete, Greece
Accommodations – To receive the group discount rate and ensure your reservation is connected to the Health-ISAC room block, please book only through the official hotel reservation link in your registration confirmation email.
Book hotel accommodations here. Hotel Information
Register today with Early Bird pricing. Registration
Friday Special Event: Knossos Palace & Seaside Lunch
Take advantage of this exclusive post-Summit half-day adventure to the Knossos Palace on Friday morning.
After exploring the vibrant frescoes and legendary architecture of Europe’s earliest advanced civilization with an expert guide, enjoy a relaxing seaside lunch featuring authentic Cretan cuisine and stunning coastal views.
Sign up for this deeply discounted excursion within the European Summit registration.
Regional Workshops and Exercises
These photos from recent regional workshops capture the collaboration of in-person engagement. Register today for an upcoming workshop.
“This is my first Health-ISAC event; it was very well delivered, good timing, food and speakers, relaxed environment but professional. Thanks.”
2026 Health-ISAC Fall Americas Summit – Orbit of Trust | November 30-December 4, 2026 | Tucson, Arizona
Friday, July 10th – Last day to submit an abstract.
Wednesday, September 9th – Summit registration opens with a one-day sale.
Mark your calendars for the one-day member sale on the opening day of registration. Members may register for US$99 on Wednesday, September 9th.
Claude Mythos and its Health Sector Implications
Health-ISAC has partnered with Quest Diagnostics to conduct joint research into the implications of autonomous vulnerability-discovery AI technologies for the health sector. The report examines Claude Mythos, an Anthropic AI model with unprecedented offensive capabilities, including autonomous zero-day vulnerability discovery and weaponization. Outperforming previous models in both conventional and offensive security benchmarks, Mythos enables non-experts to execute complex exploits independently. For the health sector, this signals a systemic shift in risk as these autonomous tools are projected to proliferate globally by late 2026, lowering the barrier for sophisticated cyberattacks against critical infrastructure.
Health-ISAC Identity Series White Paper: Managing Third-Party IAM
Vendors, partners, and others need to be managed appropriately to minimize risk to healthcare organization. Health-ISAC has the 12th white paper in an ongoing series for CISOs on Identity & Access Management (IAM).
This paper :
- Breaks down third-party IAM challenges
- Defines best practices to mitigate threats to third-party IAM systems
- Leverages use cases to define the application of these best practices in real-world scenarios
Human Risk Management Maturity Model
A report by Living Security, a Health-ISAC Champion in the Community Services program.
New Vulnerabilities Aimed at Healthcare Industry
An on-demand webinar on YouTube by Ridge Security, a Health-ISAC Pathfinder in the Community Services program.
- Related Resources & News
- Health-ISAC Health Sector Heartbeat – Q2 2026
- Healthcare Cybersecurity Always Comes Back to People
- 2026 Health-ISAC CISO Benchmarking Report
- June Incident Response Insights
- New critical infrastructure cybersecurity framework features government, regional council options
- Frontier AI in the Health Sector: Managing Supply Chain and Vendor Risk
- The State of Enterprise Cyber Crisis Readiness (report)
- Human Risk Management 90-Day Playbook
- Cybercriminals Flock to Healthcare Businesses as Attacks Surge
- DHS Revives Critical Infrastructure Threat Sharing, Without the Legal Shield Industry Wants