This site uses cookies to improve your experience. To help us insure we adhere to various privacy regulations, please select your country/region of residence. If you do not select a country, we will assume you are from the United States. Select your Cookie Settings or view our Privacy Policy and Terms of Use.
Cookie Settings
Cookies and similar technologies are used on this website for proper function of the website, for tracking performance analytics and for marketing purposes. We and some of our third-party providers may use cookie data for various purposes. Please review the cookie settings below and choose your preference.
Used for the proper function of the website
Used for monitoring website traffic and interactions
Cookie Settings
Cookies and similar technologies are used on this website for proper function of the website, for tracking performance analytics and for marketing purposes. We and some of our third-party providers may use cookie data for various purposes. Please review the cookie settings below and choose your preference.
Strictly Necessary: Used for the proper function of the website
Performance/Analytics: Used for monitoring website traffic and interactions
Two large data breaches were reported in April that occurred way back in 2023, a ransomware attack on the City of Long Beach and a cyberattack on Dameron Hospital in California. These are likely to continue to be reported by affected HIPAA-regulated entities over the next few weeks.
Premier Health Partners, a Dayton, OH-based network of three hospitals and two major medical centers, has recently issued a press release about a data breach first identified over two years ago. The July 18, 2025, press release explains that on July 12, 2023, Premier Health identified suspicious activity within certain computer systems.
A settlement has been agreed to resolve a class action lawsuit against Retina Group of Washington over a March 2023 data breach that involved unauthorized access to the protected health information of 455,935 individuals. Million Settlement to Resolve Data Breach Lawsuit appeared first on The HIPAA Journal.
For example, a systematic review of medical journals found only 0.6% For example, the Feinstein Institute for Medical Research settled HIPAA violations for $3.9 Take electronic health records (EHRs) – a decade ago, they were touted as the 21st-century upgrade to medical practice. of studies made their data public.
Department of Health and Human Services (HHS) released a Notice of Proposed Rulemaking (NPRM) to modify the Health Insurance Portability and Accountability Act (HIPAA) Security Rule of 1996. This is the first HIPAA Security rule update since 2013. From 2018-2023, reports of significant breaches increased by 102%.
from the corresponding period in 2023. The post Data Breaches Up 10% Although Victim Count Falls Sharply appeared first on The HIPAA Journal. Healthcare data compromises have increased by 19.9% year-over-year but are down 24.9% In terms of affected individuals, there has been a 39.2%
A settlement has been agreed to resolve class action data breach litigation against HealthEC and its clients over a 2023 hacking incident and data breach. Between July 14, 2023, and July 23, 2023, hackers accessed its network and stole files containing sensitive data. One of the class action lawsuits – Victoria Lempinen v.
The compromised email account was reviewed and found to contain patients full names, addresses, dates of birth, medical and treatment information, dates of service, provider and facility names, procedure codes, billing and claims information, patient account identifiers, and payor information.
Specialty Networks LLC, a Cardinal Health company that provides radiology information systems and PPS analytics to urology, gastroenterology, and rheumatology practices to improve patient outcomes, has agreed to settle a class action lawsuit stemming from a 2023 data breach. Million appeared first on The HIPAA Journal.
The stolen information included names, Social Security numbers, taxpayer identification numbers, medical or health insurance information, and other sensitive information. The affected individuals were notified about the data breach on March 14, 2023.
On October 9, 2023, Azura Vascular Care identified suspicious network activity, with the forensic investigation confirming that hackers had access to its network between September 27, 2023, and October 9, 2023, during which time they potentially stole the protected health information of patients.
The first unauthorized access occurred in February 2021 and continued until February 2023. When the privacy breach was detected, the matter was investigated internally, and the physical therapist was fired, although the lawsuit alleges KU Health failed to notify law enforcement about the illegal medical record access.
From the information collected, third parties could infer that a patient was being treated for a specific medical condition, such as cancer, pregnancy, or addiction. The class consists of more than 819,000 consumers who had a MyChart patient portal account between January 1, 2020, and December 31, 2023.
billion in 2023, is forecasted to grow to 5.06 make sure items like medications and PPE are always in stock). By streamlining workflows, like the medical billing process, CollaborateMD helps providers utilize reporting tools that simplify revenue cycle management, reimbursing them faster. billion by 2030.
An investigation was launched which revealed an unauthorized third party had access to the email account for 2 months since November 6, 2023, and other email accounts may also have been accessed. The post Email Account Breaches Reported by Access TeleCare & Madison County, MS appeared first on The HIPAA Journal.
Personal data is defined as any information linked or reasonably linkable to a Virginia resident, excluding publicly available information, protected health information covered by HIPAA, health records, patient identifying information, and other information relating to compliance with various other federal laws.
Penalties for HIPAA violations can be issued by the Department of Health and Human Services’ Office for Civil Rights (OCR) and state attorneys general. In addition to financial penalties, covered entities are required to adopt a corrective action plan to bring policies and procedures up to the standards demanded by HIPAA. .
The Houston, TX-based medical device company, LivaNova, is facing multiple class action lawsuits over an October 2023 cyberattack that exposed the protected health information of 180,000 patients. The post LivaNova Facing Multiple Class Action Lawsuits Over October 2023 Cyberattack appeared first on The HIPAA Journal.
Kisco Senior Living experienced its attack in June 2023, and Island Ambulatory Surgery Center suffered an attack in July. According to the notification letters mailed to the affected individuals in April 2024, a cyberattack was detected on June 6, 2023, when its network was disrupted.
HIPAA violation cases are compliance investigations that result from a data breach being notified to the Department of Health and Human Services’ (HHS) Office for Civil Rights (OCR) or a privacy complaint being submitted to OCR via the complaints portal. There are many different types of HIPAA violation cases.
The medical device manufacturer Livanova, the Massachusetts community behavioral health center Aspire Health Alliance, and Santa Rosa Behavioral Healthcare Hospital in California have experienced ransomware attacks that exposed patient data. million in Q4, 2023, as a result of the attack.
Email accounts have been compromised at the University of Wisconsin Hospitals and Clinics Authority and the Medical Home Network in Illinois. 20, 2023, and Dec. Suspicious activity was identified in MHN’s email environment on or around October 11, 2023.
Several class action lawsuits have been filed against City of Hope National Medical Center, a National Cancer Institute (NCI)-designated cancer treatment and research center, over a recently disclosed data breach that exposed the protected health information of more than 827,000 individuals.
The HIPAA Journal has compiled healthcare data breach statistics from October 2009, when the Department of Health and Human Services (HHS) Office for Civil Rights (OCR) started publishing summaries of healthcare data breaches on its website. On January 22, 2023, the breach portal listed 857 data breaches as still; under investigation.
Marlton, NJ-based Continuum Health Alliance has recently confirmed that it has experienced a security incident that exposed the data of 377,119 patients of its client, Consensus Medical Group, a physician-owned medical group in Evesham, NJ.
March was a particularly bad month for healthcare data breaches with 93 branches of 500 or more records reported to the Department of Health and Human Services (HHS) Office for Civil Rights (OCR), a 50% increase from February and a 41% year-over-year increase from March 2023.
Bradford Health Services, Alabama Bradford Health Services in Birmingham, Alabama, has issued a May 30, 2025, notice about a data security incident that was detected more than 18 months ago on December 8, 2023. Data compromised in the incident included names, addresses, and information related to medical tests.
Medical coding consists of transforming healthcare diagnoses, procedures, medical services, and equipment into universal alphanumeric codes. According to Grand View Research , the medical coding market is expected to grow at a compound annual growth rate (CAGR) of 9.85% from 2023 to 2030.
The Michigan House of Representatives has passed a bill ( HB 4242 ) that seeks to protect the sensitive health data of state residents from foreign entities of concern by requiring electronic medical records to be stored in the United States or Canada. The bills will now be considered by the Senate.
SkinCure Oncology has notified 13,434 patients about an email attack that occurred in June 2023, and the Wisconsin Department of Health Services has announced a breach of the personal information of 19,150 Medicaid recipients. SkinCure Oncology believes files in those email accounts were viewed and potentially obtained in the attack.
SouthCoast Health and Privia Medical Group in Georgia have notified patients about a cyberattack and data breach that occurred in June 2023. The post SouthCoast Health; Call 4 Health Notify Patients About Cyberattacks appeared first on The HIPAA Journal. During that time, files on the network were viewed or copied.
Department of Health and Human Services (HHS) released a Notice of Proposed Rulemaking (NPRM) to modify the Health Insurance Portability and Accountability Act (HIPAA) Security Rule of 1996. This is the first HIPAA Security rule update since 2013. From 2018-2023, reports of significant breaches increased by 102%.
Department of Health and Human Services (HHS) released a Notice of Proposed Rulemaking (NPRM) to modify the Health Insurance Portability and Accountability Act (HIPAA) Security Rule of 1996. This is the first HIPAA Security rule update since 2013. From 2018-2023, reports of significant breaches increased by 102%.
Los Angeles County Department of Health Services’ employees were targeted in a recent phishing campaign, and almost 2,800 Catholic Medical Center patients have been affected by a data breach at one of its vendors. diagnosis/condition, treatment, test results, medications), and/or health plan information.
On September 14, 2023, RMN notified HAPG that it had identified suspicious activity on its network, including in the systems it manages for HAPG. Million Record MSP Data Breach appeared first on HIPAA Journal. The post Health Data Analytics Firm Reports 1.1-Million
The New York multi-site medical practice, Albany ENT & Allergy Services, has agreed to pay a $500,000 financial penalty to the state of New York and will invest $2.25 The first intrusion involved ransomware and was discovered on March 27, 2023, when files were encrypted. The compromised systems contained the records of 213.
An investigation was launched in November 2023, when unauthorized access was suspected. The post Insider Breaches Reported by Providence Mission Heritage Endocrinology & Samaritan Health Services appeared first on The HIPAA Journal.
billion in MA risk-adjusted payments were made for 2023 and that 80% of those payments were made to just 20 MA companies. In fiscal year 2023, the CMS identified $12.7 In fiscal year 2023, the CMS identified $12.7 HHS-OIG estimates that around $7.5 The CMS only concurred with the last recommendation.
An investigation was launched which determined that between November 2, 2023, and March 29, 2024, the vendor accessed and downloaded information from a Kairos database. The post Protected Health Information Stolen in HealthEquity SharePoint Breach appeared first on The HIPAA Journal.
The bill expands privacy protections for Washington State’s health citizens beyond HIPAA’s provisions. The ethos of the name and the intent of this law is a perfect vision for considering what we hear and learn this week coming out of the 2023 HIMSS Annual Conference as the meeting kicks off today. First, the law.
They confirmed that an unauthorized actor gained access to its network on October 8, 2023, and maintained access until the breach was detected. The post Texas Retina Associates Cyberattack Affects 312,000 Patients appeared first on The HIPAA Journal.
Data breaches have recently been announced by Axis Health System in Colorado, Gandara Mental Health Center in Massachusetts, Valleygate Dental Surgery Centers in North Carolina, and Family Medical Center in Maryland. The intrusion was detected on March 9, 2023, when ransomware was used to encrypt files.
While ransomware groups were a major threat in 2023 and were behind some of 2023’s largest data breaches, there was a slight decline in attacks year-over-year. Verizon said threat actors are increasingly targeting personal information over medical data.
Reynolds Blog Article Explore the intersection of HIPAA violations and the False Claims Act, highlighting compliance strategies to mitigate legal risks in healthcare. Hence, underscoring that alleged HIPAA violations are material and can be the basis of a FCA case. Rose, JD, MBA Fact checked by Keith A.
We organize all of the trending information in your field so you don't have to. Join 5,000+ users and stay up to date on the latest articles your peers are reading.
You know about us, now we want to get to know you!
Let's personalize your content
Let's get even more personalized
We recognize your account from another site in our network, please click 'Send Email' below to continue with verifying your account and setting a password.
Let's personalize your content