• FTC finalizes updates to Health Breach Notification Rule

    April 30, 2024 - The Federal Trade Commission (FTC) finalized updates to its Health Breach Notification Rule (HBNR) with the goal of clarifying the rule’s applicability to health apps and other technologies that fall outside HIPAA’s purview. The FTC issued the HBNR more than a decade ago, when health apps were not as embedded into the US healthcare...

  • Physician groups seek clarity on Change Healthcare breach notification requirements

    April 29, 2024 - In a recent press release, UnitedHealth Group (UHG) confirmed that data was compromised during the Change Healthcare cyberattack. While UHG has yet to complete its data review, its initial investigation suggests that the breach “could cover a substantial proportion of people in America.” In the same press release, UHG offered to make...

  • Kaiser notifies 13.4M individuals of data breach

    April 26, 2024 - Kaiser Foundation Health Plan filed a data breach report with the HHS Office for Civil Rights (OCR), confirming a 13.4-million record breach. The filing signifies the largest breach reported to OCR in 2024 so far. Kaiser told TechCrunch that the breach stemmed from its use of certain technologies installed on its websites and applications, which...

  • Threat actors increasingly exploit zero-day vulnerabilities to evade threat detection

    April 25, 2024 - Threat actors are increasingly targeting edge devices, exploiting zero-day vulnerabilities, and engaging in living off the land attacks to evade threat detection tools, Mandiant revealed in a recent report. In 2023, Mandiant tracked 97 unique zero-day vulnerabilities that were exploited in the wild, signifying a 50% increase from 2022. Exploits...


Today's Top Stories

FTC finalizes updates to Health Breach Notification Rule

The Federal Trade Commission (FTC) finalized updates to its Health Breach Notification Rule (HBNR) with the goal of clarifying the rule’s applicability to health apps and other technologies that...

Physician groups seek clarity on Change Healthcare breach notification requirements

In a recent press release, UnitedHealth Group (UHG) confirmed that data was compromised during the Change Healthcare cyberattack. While UHG has yet to complete its data review, its initial...

Kaiser notifies 13.4M individuals of data breach

Kaiser Foundation Health Plan filed a data breach report with the HHS Office for Civil Rights (OCR), confirming a 13.4-million record breach. The filing signifies the largest breach reported to OCR in...

Threat actors increasingly exploit zero-day vulnerabilities to evade threat detection

Threat actors are increasingly targeting edge devices, exploiting zero-day vulnerabilities, and engaging in living off the land attacks to evade threat detection tools, Mandiant revealed in a recent...

Third-party tracking tech lawsuits surge in healthcare

High rates of data breaches and cyberattacks mean that healthcare is no stranger to lawsuits. According to a recent report from law firm BakerHostetler, the healthcare sector’s use of third-party...

Change Healthcare cyberattack fallout continues

UPDATE 4/23/2024 - This article has been updated to reflect new information about the Change Healthcare cyberattack. UHG has not yet provided a formal breach notification to HHS following the...

HHS finalizes rule to strengthen reproductive health data privacy under HIPAA

The Biden-Harris administration, through HHS, issued a final rule to bolster patient privacy for those seeking and administering lawful reproductive healthcare. Entitled HIPAA Privacy Rule to Support...

View all stories