The Coalition for Health AI (CHAI), a nonprofit founded by clinicians to advance responsible health AI, has announced new efforts to help health systems, payers, and health tech companies respond to frontier model threats – defending against potential attacks and harnessing frontier models for defense.
According to a press release, the Health AI Cybersecurity Work Group, led by a leadership council of health system, payer, and industry experts, will provide healthcare organizations with practical, peer-developed guidance on frontier model cyber risk and readiness through playbooks released at the end of 2026.
The release of Anthropic’s Mythos-class frontier models, including the public Fable variant on June 9, 2026, introduced a fundamentally changed cybersecurity threat and defense landscape for healthcare, the news release stated. These Mythos-class capabilities compress attack timelines, industrialize the exfiltration of protected health information and ransomware, and offer defenders unprecedented capabilities for vulnerability management and incident response.
CHAI’s 100-member Health AI Cybersecurity Work Group will collaborate through bi-weekly work sessions to develop a range of outputs, including defensive and offensive playbooks, a frontier AI cyber risk assessment tool, and more. The leadership council will oversee these efforts and ensure the resources align with the threat levels hospitals and health systems are actively facing.
“As AI rapidly transforms our industry, it also brings new speed, scale, and sophistication to cyber threats. On the ground in a health system – particularly in underserved and lower-resourced communities – it suggests a new playbook is needed,” said Isaiah Nathaniel, SVP & CISO with Delaware Valley Community Health, in a statement.
The effort will be led by the following leadership council members:
- Hamed Abbaszadegan, foundation board member, Healthcare Standards Institute
- Randy Arvay, CTO & CISO, Duke Health
- Alan Berry, CISO, Centene
- James Case, CISO, Baptist Health
- John Flores, CISO, University of Texas Medical Branch and UT Health Intelligence Platform ISO (UT System Initiatives)
- Ed Gaudet, CEO and founder, Censinet
- Kevin Hamel, CISO, Hartford HealthCare
- Josh Howell, Healthcare CTO, Rubrik
- Bruce James, CISO, Boston Children’s Hospital
- Shawn Kelly, CISO, UCI Health
- Isaiah Nathaniel, SVP & CIO, Delaware Valley Community Health
- Zach Powers, CISO, Abridge
- Janet Rathod, CISO, Johns Hopkins Health System
- Errol Weiss, CSO, Health-ISAC
