This site uses cookies to improve your experience. To help us insure we adhere to various privacy regulations, please select your country/region of residence. If you do not select a country, we will assume you are from the United States. Select your Cookie Settings or view our Privacy Policy and Terms of Use.
Cookie Settings
Cookies and similar technologies are used on this website for proper function of the website, for tracking performance analytics and for marketing purposes. We and some of our third-party providers may use cookie data for various purposes. Please review the cookie settings below and choose your preference.
Used for the proper function of the website
Used for monitoring website traffic and interactions
Cookie Settings
Cookies and similar technologies are used on this website for proper function of the website, for tracking performance analytics and for marketing purposes. We and some of our third-party providers may use cookie data for various purposes. Please review the cookie settings below and choose your preference.
Strictly Necessary: Used for the proper function of the website
Performance/Analytics: Used for monitoring website traffic and interactions
Esse Health has confirmed that 263,601 individuals have been affected by its April 2025 cyberattack. Louis area in Missouri, has recently notified the Maine Attorney General about an April 2025 cyberattack and data breach involving unauthorized access to the personal and protected health information (PHI) of 263,601 individuals.
Biggest Healthcare Data Breaches in April 2025 In April, 27 data breaches of 10,000 or more records were reported to OCR, including 11 data breaches of 100,000 or more records. These are likely to continue to be reported by affected HIPAA-regulated entities over the next few weeks.
Medical Express Ambulance Service has announced a March 2024 data breach that has affected more than 118,000 individuals. Data breaches have also been announced by Vitenas Cosmetic Surgery, Newport Harbor Pathology Medical Group, Rhea Medical Center, and Alabama Ophthalmology Associates.
Sunflower Medical Group is facing a class action lawsuit over its recently disclosed data breach involving the protected health information of almost 221,000 current and former patients. Sunflower Medical Group is a private multi-specialty medical practice with four locations in Kansas. Sunflower Medical Group, P.A. ,
Cyberattacks and data breaches have been announced by Sunflower Medical Group, The Center for Digestive Health, NVW Newco, Endless Mountains Health Systems, and the Department of Veterans Affairs Eastern Colorado Health Care System. During that time, files were exfiltrated from its network, some of which contained patient data.
On March 22, 2025, Compumedics identified unauthorized access to its network which disrupted the operations of its information technology systems. They confirmed that an unauthorized third party had access to its systems between February 15, 2025, and March 23, 2025, during which time files were copied from its systems.
Mobile apps for physicians can enable communication with patients and other providers, enhance medical education, inform clinical decision-making, and streamline documentation. But with thousands of medical apps available for Apple and Android smartphones, where should you start?
Some have moved slowly for fear of running afoul of HIPAA laws. Related Videos Related Content Advertisement June 20th 2025 Gait: The sixth vital sign that should be a routine part of primary care May 27th 2025 Ep. Others have balked at the cost of upgrading digital systems, transferring volumes of data, or training employees.
However, managing a successful medical practice in 2025 will require lots of work beyond the EMR. Knowing the right medical practice software tools – for scheduling, documentation, clinical decision support, and more – will make your life much easier.
An investigation was launched, and it was determined on January 21, 2025, that Ascension had inadvertently disclosed patient data to the former business partner, and that data had likely been stolen in the hacking incident.Ascension confirmed that its own systems were unaffected.
The review of the accounts confirmed that they contained names, addresses, dates of birth, financial account information, diagnoses, lab results, medications, treatment information, health insurance and claims information, provider names, dates of treatment, and Social Security numbers.
Kettering Health, a large health system with 14 medical centers and 120 outpatient facilities in western Ohio, has experienced a system-wide technology outage that has affected all 14 of its medical centers and disrupted its call center. The medical centers remain open, and emergency rooms are continuing to accept patients.
Data breaches have been disclosed by a Minnesota medical device manufacturer and the threat actor behind an apparent attack on a California hospital. According to the filing, a breach of its IT systems was detected on June 5, 2025, which rendered certain IT systems and data unavailable. World Leaks claims to have exfiltrated 146.4
Two breach notices have been added to the Beacon Health System website, the first on March 24, 2025, involving a business associate called CPS Solutions, a provider of services to support pharmacy operations. Notification letters were mailed to the affected individuals on February 10, 2025.
Department of Justice has announced the results of its 2025 National Health Care Fraud Takedown, the largest in its history, eclipsing the previous record of $6 billion with actions to disrupt health care fraud schemes involving more than $14.6 billion in intended losses. They included individuals responsible for $10.6
The breach was detected on January 15, 2025, and immediate action was taken to prevent further unauthorized access. The forensic investigation confirmed that an unauthorized third party accessed the account between January 10, 2025, and January 14, 2025, and potentially viewed or acquired patient data.
HIPAA violation cases are compliance investigations that result from a data breach being notified to the Department of Health and Human Services’ (HHS) Office for Civil Rights (OCR) or a privacy complaint being submitted to OCR via the complaints portal. There are many different types of HIPAA violation cases.
on February 14, 2025. The account review confirmed that a limited amount of patient data had been exposed including names, medical record numbers, dates of birth, treatment dates, encounter numbers, and patients ages. Peters, Missouri, has notified 1,265 individuals about a security incident on January 17, 2025.
fewer data breaches than April 2025. So far in 2025, 311 data breaches affecting 500 or more individuals have been reported to OCR – a 13.1% In the first 5 months of 2025, 23,106,676 individuals were affected by healthcare data breaches – a 52.4% decrease from the 358 data breaches reported in the first five months of 2024.
The group had access to its network since June 14, 2025, and exfiltrated patient information such as names, addresses, Social Security numbers, dates of birth, driver’s license/state identification card numbers, medical record numbers, treatment information, and health insurance information. A lawsuit – Horvath v. . –
Frederick Health Medical Group is facing several potential class action lawsuits over a recent data breach that affected more than 900,000 patients. The electronic medical record system was not compromised in the attack. It is also unclear if the ransom was paid.In
The HIPAA Journal has not downloaded any of the leaked data, so cannot confirm the accuracy of the groups’ claims. Arlington Occupational Health and Wellness in Texas was added to the group’s data leak site on July 4, 2025, along with samples of the stolen data and links to the full dataset.
The hackers encrypted files and stole data such as names, addresses, telephone numbers, email addresses, dates of birth, demographic information, Social Security numbers, drivers license numbers, medical record numbers, health information, payment information, and health insurance information. Bean of Siri & Glimstad LLP.
In its April 11, 2025, substitute breach notice, Endue Software explained that unauthorized access to some of its systems was identified on February 17, 2025.The The forensic investigation confirmed that an unauthorized actor gained access to some of its systems for a brief period on February 16, 2025.
In 2025, successful Epic implementation must address emerging requirements including artificial intelligence integration, cloud computing capabilities, and enhanced interoperability standards that have become essential for modern healthcare delivery. Return on investment analysis should address both quantitative and qualitative benefits.
Are you considering using your iPhone for medical dictation? What is mobile medical speech-to-text? You’ll need mobile medical speech-to-text software to use your iPhone or iPad for medical dictation. However, keep in mind that speech-to-text apps are just one type of medical dictation workflow.
The file review was completed on or around March 26, 2025, and confirmed that the compromised information included names and Social Security numbers. The ransomware attack was detected on March 13, 2025, and the forensic investigation determined on March 17, 2025, that the ransomware group had exfiltrated files from its network.
A comprehensive and time-intensive review of the affected accounts was recently concluded, and it was confirmed that names, addresses, Social Security numbers, drivers license numbers, bank account information, payment card information, dates of birth, medical information, and health insurance information were stored in the accounts.
The data review was completed on February 13, 2025, and confirmed that names, dates of birth, Social Security numbers, medical information, treatment information, healthcare provider information, and health insurance information had been exposed.
Layer onto that the growing bring-your-own-device culture: allowing employees to sync personal smartphones with the electronic health record can “raise privacy concerns” and blur the line between work and off-hours browsing, warns a HIPAA BYOD briefing. Against that backdrop, a technology and device policy is no longer a “nice to have.”
Other healthcare providers known to have been affected include Rhea Medical Center and Hamilton County in Tennessee. Notification letters were mailed to the affected individuals two months later, on March 31, 2025. Individual notification letters were mailed on March 21, 2025.
A data review vendor was engaged, and Access TeleCare was provided with the final results of the review on August 30, 2024; however, it took until March 4, 2025, for individual notifications to be mailed. On January 14, 2025, an employee emailed a document to a personal email account.
Reynolds Fact checked by Chris Mazzolini Blog Article Thoughtful design in medical practices enhance patient experience, boost staff productivity, and improve online reviews without major renovations. Austin Littrell May 19th 2025 Podcast Jeffrey A. Clarifying a patient’s misunderstanding of the HIPAA privacy rule Rachel V.
More physicians are using medical speech-to-text software to save time on clinical notes. This article discusses three of the top HIPAA-compliant medical dictation apps in 2025. Three of the best products on the market in 2025 are Mobius Conveyor , Dragon Medical One , and NVoq.Voice.
Healthcare practices are often plagued with medical billing compliance questions like: “Am I upcoding?” ” With all of these concerns, it’s vital that providers and billing departments understand and follow the key elements of proper medical billing compliance to run a successful practice.
On March 20, 2025, Pineland Community Service Board disclosed a security incident detected on January 20, 2025. The forensic investigation confirmed unauthorized network access between November 24, 2024, and January 20, 2025, during which time the threat actor viewed or copied information from its network.
Reynolds Fact checked by Chris Mazzolini Blog Article Navigating the health tech landscape requires strategic diligence to avoid hidden costs and ensure seamless integration in medical practices. Clarifying a patient’s misunderstanding of the HIPAA privacy rule Rachel V. Austin Littrell May 19th 2025 Podcast Jeffrey A.
MarinHealth has agreed to a $3 million settlement to resolve claims related to its use of the Meta Pixel tracking tool on its website between 2019 and 2025. MarinHealth is the operator of Marin Health Medical Center and various outpatient clinics in Marin County and Sonoma County in California.
NRS completed the review in February 2025 and informed Harbin Clinic that some of the copied files contained data related to patients and guarantors whose accounts were sent to collections, as well as individuals involved in other legal proceedings. During that time, files and folders were copied from its network without authorization.
Rapid advancements in the healthcare technology landscape have resulted in massive popularity of digital information storage methods among hospitals, medical practices and other healthcare facilities. EHR/EMR software solutions make it easier for healthcare providers to manage patient’s medical records while automating clinical workflows.
All claims must be submitted by or be postmarked by June 30, 2025. The settlement has received preliminary approval from the court, and the final approval hearing has been scheduled for June 16, 2025. Million Data Breach Settlement appeared first on The HIPAA Journal. The post Azura Vascular Care Agrees to $3.15
I refer to this thought transference as the Bathroom Experience (BE), a powerful metaphor for how seemingly minor details can dramatically impact patients’ perceptions of a medical practice. Reynolds Blog Article The small details, like restroom cleanliness, shape patient perceptions and impact healthcare experiences in practices.
An analysis of the exposed files confirmed they contained patient information such as names, Social Security numbers, birth dates, medical record numbers, driver’s license numbers, health insurance numbers, Medicare numbers, Medicaid numbers, health insurance information, and medical and treatment information.
The HIPAA Journal reported on the breach on May 19, 2025, the same day six class action lawsuits were filed in federal court in California over the data breach. The affected individuals started to be notified about the data breach on May 9, 2025. More lawsuits are expected to be filed in the coming days.
We organize all of the trending information in your field so you don't have to. Join 5,000+ users and stay up to date on the latest articles your peers are reading.
You know about us, now we want to get to know you!
Let's personalize your content
Let's get even more personalized
We recognize your account from another site in our network, please click 'Send Email' below to continue with verifying your account and setting a password.
Let's personalize your content