{"id":404,"date":"2020-01-16T15:59:50","date_gmt":"2020-01-16T20:59:50","guid":{"rendered":"https:\/\/eagleassociates.net\/news\/?p=404"},"modified":"2020-04-22T15:22:38","modified_gmt":"2020-04-22T19:22:38","slug":"emergency-directive-to-mitigate-windows-vulnerabilities","status":"publish","type":"post","link":"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/","title":{"rendered":"Emergency Directive to Mitigate Windows Vulnerabilities"},"content":{"rendered":"\n<p>The Office for Civil Rights (OCR) is the entity that enforces HIPAA regulations.&nbsp; In partnership with the Cybersecurity and Infrastructure Security Agency (CISA) and the Division of Critical Infrastructure Protection (CIP), the OCR has shared a directive regarding critical Windows vulnerabilities that need to be addressed as soon as possible.&nbsp; Although the directive is mandatory for Federal entities, OCR strongly recommends that all healthcare and public health sector entities also consider patching their environments as soon as they are able.<\/p>\n\n\n\n<p>Eagle Associates highly recommends patching as soon as possible to protect your networks\/devices from malware and other activity that would cause considerable disruption and expense.&nbsp; We advise that you work with your IT staff\/vendor to implement the patches, because healthcare entities are attractive targets for malware, due to the value and sensitive nature of PHI.&nbsp; In addition, you could be the subject of investigation and enforcement action if it was found that you didn\u2019t take reasonable steps to mitigate known risks, such as this vulnerability.<\/p>\n\n\n\n<p>Please read the full directive for complete details, but among the vulnerabilities patched were weaknesses in how Windows validates Elliptic Curve Cryptography (ECC) certificates and how Windows handles connection requests in the Remote Desktop Protocol (RDP) server and client.&nbsp; The vulnerabilities affect all supported versions of Windows (including Windows 10, Windows Server 2012 etc.), and other related products as follows:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Internet Explorer<\/li><li>Microsoft Office and Microsoft Office Services and Web Apps<\/li><li> ASP.NET Core<\/li><li> .NET Core<\/li><li> .NET Framework<\/li><li> OneDrive for Android<\/li><li> Microsoft Dynamics<\/li><\/ul>\n\n\n\n<p>You can read the directive here: <a href=\"https:\/\/cyber.dhs.gov\/ed\/20-02\/\">https:\/\/cyber.dhs.gov\/ed\/20-02\/<\/a><\/p>\n\n\n\n<p>The Microsoft patch information can be found here: <br> <a href=\"https:\/\/portal.msrc.microsoft.com\/en-us\/security-guidance\/releasenotedetail\/2020-Jan\">https:\/\/portal.msrc.microsoft.com\/en-us\/security-guidance\/releasenotedetail\/2020-Jan <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Office for Civil Rights (OCR) is the entity that enforces HIPAA regulations.&nbsp; In partnership with the Cybersecurity and Infrastructure Security Agency (CISA) and the Division of Critical Infrastructure Protection (CIP), the OCR has shared a directive regarding critical Windows vulnerabilities that need to be addressed as soon as possible.&nbsp; Although the directive is mandatory&#8230; <span class=\"more\"><a class=\"more-link\" href=\"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/\">Continue reading <span class=\"meta-nav\">&#8594;<\/span><\/a><\/span><\/p>\n","protected":false},"author":2,"featured_media":405,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[35],"tags":[],"class_list":["post-404","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-eagle-staff"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Emergency Directive to Mitigate Windows Vulnerabilities | Eagle Associates News<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Emergency Directive to Mitigate Windows Vulnerabilities | Eagle Associates News\" \/>\n<meta property=\"og:description\" content=\"The Office for Civil Rights (OCR) is the entity that enforces HIPAA regulations.&nbsp; In partnership with the Cybersecurity and Infrastructure Security Agency (CISA) and the Division of Critical Infrastructure Protection (CIP), the OCR has shared a directive regarding critical Windows vulnerabilities that need to be addressed as soon as possible.&nbsp; Although the directive is mandatory... Continue reading &#8594;\" \/>\n<meta property=\"og:url\" content=\"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/\" \/>\n<meta property=\"og:site_name\" content=\"Eagle Associates News\" \/>\n<meta property=\"article:published_time\" content=\"2020-01-16T20:59:50+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2020-04-22T19:22:38+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/eagleassociates.net\/news\/wp-content\/uploads\/2020\/01\/AdobeStock_30111079-w.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1000\" \/>\n\t<meta property=\"og:image:height\" content=\"664\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Eagle Staff\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Eagle Staff\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"1 minute\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/2020\\\/01\\\/emergency-directive-to-mitigate-windows-vulnerabilities\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/2020\\\/01\\\/emergency-directive-to-mitigate-windows-vulnerabilities\\\/\"},\"author\":{\"name\":\"Eagle Staff\",\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/#\\\/schema\\\/person\\\/ed0338105c6f7bd7e7014934db2b97f9\"},\"headline\":\"Emergency Directive to Mitigate Windows Vulnerabilities\",\"datePublished\":\"2020-01-16T20:59:50+00:00\",\"dateModified\":\"2020-04-22T19:22:38+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/2020\\\/01\\\/emergency-directive-to-mitigate-windows-vulnerabilities\\\/\"},\"wordCount\":289,\"image\":{\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/2020\\\/01\\\/emergency-directive-to-mitigate-windows-vulnerabilities\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/wp-content\\\/uploads\\\/2020\\\/01\\\/AdobeStock_30111079-w.jpg\",\"articleSection\":[\"eagle associates staff\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/2020\\\/01\\\/emergency-directive-to-mitigate-windows-vulnerabilities\\\/\",\"url\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/2020\\\/01\\\/emergency-directive-to-mitigate-windows-vulnerabilities\\\/\",\"name\":\"Emergency Directive to Mitigate Windows Vulnerabilities | Eagle Associates News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/2020\\\/01\\\/emergency-directive-to-mitigate-windows-vulnerabilities\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/2020\\\/01\\\/emergency-directive-to-mitigate-windows-vulnerabilities\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/wp-content\\\/uploads\\\/2020\\\/01\\\/AdobeStock_30111079-w.jpg\",\"datePublished\":\"2020-01-16T20:59:50+00:00\",\"dateModified\":\"2020-04-22T19:22:38+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/#\\\/schema\\\/person\\\/ed0338105c6f7bd7e7014934db2b97f9\"},\"breadcrumb\":{\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/2020\\\/01\\\/emergency-directive-to-mitigate-windows-vulnerabilities\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/eagleassociates.net\\\/news\\\/2020\\\/01\\\/emergency-directive-to-mitigate-windows-vulnerabilities\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/2020\\\/01\\\/emergency-directive-to-mitigate-windows-vulnerabilities\\\/#primaryimage\",\"url\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/wp-content\\\/uploads\\\/2020\\\/01\\\/AdobeStock_30111079-w.jpg\",\"contentUrl\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/wp-content\\\/uploads\\\/2020\\\/01\\\/AdobeStock_30111079-w.jpg\",\"width\":1000,\"height\":664},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/2020\\\/01\\\/emergency-directive-to-mitigate-windows-vulnerabilities\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Emergency Directive to Mitigate Windows Vulnerabilities\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/#website\",\"url\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/\",\"name\":\"Eagle Associates News\",\"description\":\"News and More from Eagle Associates, Inc.\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/eagleassociates.net\\\/news\\\/#\\\/schema\\\/person\\\/ed0338105c6f7bd7e7014934db2b97f9\",\"name\":\"Eagle Staff\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f46663bd04e8c76f12d55caa7ba167ba1e86492b7c8b4bb878cad266fde91a5b?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f46663bd04e8c76f12d55caa7ba167ba1e86492b7c8b4bb878cad266fde91a5b?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f46663bd04e8c76f12d55caa7ba167ba1e86492b7c8b4bb878cad266fde91a5b?s=96&d=mm&r=g\",\"caption\":\"Eagle Staff\"},\"sameAs\":[\"http:\\\/\\\/www.eagleassociates.net\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Emergency Directive to Mitigate Windows Vulnerabilities | Eagle Associates News","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/","og_locale":"en_US","og_type":"article","og_title":"Emergency Directive to Mitigate Windows Vulnerabilities | Eagle Associates News","og_description":"The Office for Civil Rights (OCR) is the entity that enforces HIPAA regulations.&nbsp; In partnership with the Cybersecurity and Infrastructure Security Agency (CISA) and the Division of Critical Infrastructure Protection (CIP), the OCR has shared a directive regarding critical Windows vulnerabilities that need to be addressed as soon as possible.&nbsp; Although the directive is mandatory... Continue reading &#8594;","og_url":"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/","og_site_name":"Eagle Associates News","article_published_time":"2020-01-16T20:59:50+00:00","article_modified_time":"2020-04-22T19:22:38+00:00","og_image":[{"width":1000,"height":664,"url":"https:\/\/eagleassociates.net\/news\/wp-content\/uploads\/2020\/01\/AdobeStock_30111079-w.jpg","type":"image\/jpeg"}],"author":"Eagle Staff","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Eagle Staff","Est. reading time":"1 minute"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/#article","isPartOf":{"@id":"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/"},"author":{"name":"Eagle Staff","@id":"https:\/\/eagleassociates.net\/news\/#\/schema\/person\/ed0338105c6f7bd7e7014934db2b97f9"},"headline":"Emergency Directive to Mitigate Windows Vulnerabilities","datePublished":"2020-01-16T20:59:50+00:00","dateModified":"2020-04-22T19:22:38+00:00","mainEntityOfPage":{"@id":"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/"},"wordCount":289,"image":{"@id":"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/#primaryimage"},"thumbnailUrl":"https:\/\/eagleassociates.net\/news\/wp-content\/uploads\/2020\/01\/AdobeStock_30111079-w.jpg","articleSection":["eagle associates staff"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/","url":"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/","name":"Emergency Directive to Mitigate Windows Vulnerabilities | Eagle Associates News","isPartOf":{"@id":"https:\/\/eagleassociates.net\/news\/#website"},"primaryImageOfPage":{"@id":"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/#primaryimage"},"image":{"@id":"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/#primaryimage"},"thumbnailUrl":"https:\/\/eagleassociates.net\/news\/wp-content\/uploads\/2020\/01\/AdobeStock_30111079-w.jpg","datePublished":"2020-01-16T20:59:50+00:00","dateModified":"2020-04-22T19:22:38+00:00","author":{"@id":"https:\/\/eagleassociates.net\/news\/#\/schema\/person\/ed0338105c6f7bd7e7014934db2b97f9"},"breadcrumb":{"@id":"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/#primaryimage","url":"https:\/\/eagleassociates.net\/news\/wp-content\/uploads\/2020\/01\/AdobeStock_30111079-w.jpg","contentUrl":"https:\/\/eagleassociates.net\/news\/wp-content\/uploads\/2020\/01\/AdobeStock_30111079-w.jpg","width":1000,"height":664},{"@type":"BreadcrumbList","@id":"https:\/\/eagleassociates.net\/news\/2020\/01\/emergency-directive-to-mitigate-windows-vulnerabilities\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/eagleassociates.net\/news\/"},{"@type":"ListItem","position":2,"name":"Emergency Directive to Mitigate Windows Vulnerabilities"}]},{"@type":"WebSite","@id":"https:\/\/eagleassociates.net\/news\/#website","url":"https:\/\/eagleassociates.net\/news\/","name":"Eagle Associates News","description":"News and More from Eagle Associates, Inc.","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/eagleassociates.net\/news\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/eagleassociates.net\/news\/#\/schema\/person\/ed0338105c6f7bd7e7014934db2b97f9","name":"Eagle Staff","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/f46663bd04e8c76f12d55caa7ba167ba1e86492b7c8b4bb878cad266fde91a5b?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/f46663bd04e8c76f12d55caa7ba167ba1e86492b7c8b4bb878cad266fde91a5b?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f46663bd04e8c76f12d55caa7ba167ba1e86492b7c8b4bb878cad266fde91a5b?s=96&d=mm&r=g","caption":"Eagle Staff"},"sameAs":["http:\/\/www.eagleassociates.net"]}]}},"_links":{"self":[{"href":"https:\/\/eagleassociates.net\/news\/wp-json\/wp\/v2\/posts\/404","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/eagleassociates.net\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/eagleassociates.net\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/eagleassociates.net\/news\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/eagleassociates.net\/news\/wp-json\/wp\/v2\/comments?post=404"}],"version-history":[{"count":1,"href":"https:\/\/eagleassociates.net\/news\/wp-json\/wp\/v2\/posts\/404\/revisions"}],"predecessor-version":[{"id":406,"href":"https:\/\/eagleassociates.net\/news\/wp-json\/wp\/v2\/posts\/404\/revisions\/406"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/eagleassociates.net\/news\/wp-json\/wp\/v2\/media\/405"}],"wp:attachment":[{"href":"https:\/\/eagleassociates.net\/news\/wp-json\/wp\/v2\/media?parent=404"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/eagleassociates.net\/news\/wp-json\/wp\/v2\/categories?post=404"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/eagleassociates.net\/news\/wp-json\/wp\/v2\/tags?post=404"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}