Health IT Security and HIPAA News

Healthcare DDoS Attacks Are Increasing, Microsoft Says

by

Microsoft has observed an increase in distributed denial of service (DDoS) attacks against healthcare organizations in recent months, a blog post by the Azure Network Security Team explained. Microsoft...

UC San Diego Health Discloses Healthcare Data Breach Stemming From Vendor Pixel Use

by

UC San Diego Health notified patients of a healthcare data breach that occurred when its technology vendor, Solv Health, used analytics tools without the health system’s permission. Solv Health...

FBI IC3: Victims Racked Up $10.3B in Losses Tied to Internet Crime Last Year

by

The Federal Bureau of Investigation (FBI) Internet Crime Complaint Center (IC3) issued its 2022 Internet Crime Report, which revealed key trends that emerged in the cyber threat landscape last...

MA Pharmacy Falls Victim to Email Phishing Attack, Results in PHI Exposure

by

After an email phishing attack, AllCare Plus Pharmacy reported to the Maine Attorney General that 5,971 patients potentially had their protected health information (PHI) exposed. AllCare became aware...

Experts Shed Light On Healthcare Cybersecurity Challenges Before Senate Panel

by

During a recent Senate Homeland and Governmental Affairs Committee hearing, four healthcare industry leaders shared their views on healthcare cybersecurity challenges and the ways in which the federal...

CISA, FBI, MS-ISAC Warn Critical Infrastructure of LockBit 3.0 Ransomware Attacks

by

The Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), and the Multi-State Information Sharing & Analysis Center (MS-ISAC) issued a joint...

FL Children’s Health Insurance Site Contractor Pays Fine to Resolve False Claims Act Allegations

by

Jelly Bean Communications Design LLC, a Florida-based design firm, agreed to pay $293,771 to resolve False Claims Act allegations related to cybersecurity failures, the Department of Justice (DOJ)...

HC3 Raises Alarm Over Black Basta Ransomware Group as a Threat to Healthcare

by

The healthcare sector faces a new cybersecurity threat as the Black Basta ransomware group emerges, the Health Sector Cybersecurity Coordination Center (HC3) warned in a threat profile. The ransomware...

4.2M Individuals Impacted by Healthcare Data Breach at Independent Living Systems

by

Miami, Florida-based Independent Living Systems (ILS) disclosed a healthcare data breach that impacted more than 4 million individuals, making it the largest reported healthcare data breach of 2023 to...

CISA Launches Pilot Program to Help Critical Infrastructure Manage Cybersecurity Vulnerabilities

by

The Cybersecurity and Infrastructure Security Agency (CISA) launched its Ransomware Vulnerability Warning Pilot (RVWP) with the goal of helping critical infrastructure entities remain aware of and...

Blackbaud Pays $3M to Settle “Misleading Disclosures” Following Ransomware Attack

by

Blackbaud agreed to pay $3 million to settle charges relating to a 2020 ransomware attack that impacted more than 13,000 customers, the Securities and Exchange Commission (SEC) announced. Blackbaud...

HC3 Report Uncovers Key Data Exfiltration Trends in Healthcare

by

Healthcare providers face a heightened risk of data exfiltration, according to a recent HHS Health Sector Cybersecurity Coordination Center (HC3) brief that delves into the various threat actors and...

HHS Requests $78M in Funding For OCR in Next Fiscal Year

by

HHS requested $78 million in funding for its Office for Civil Rights (OCR) for FY 2024, signifying a $38 million increase from last year’s budget. The requested budget increase follows HHS’...

HSCC Publishes Guidance On Managing Legacy Medical Tech Security

by

The Healthcare and Public Health Sector Coordinating Council (HSCC) Cybersecurity Working Group (CWG) released its “Health Industry Cybersecurity – Managing Legacy Technology Security...

1M Individuals Impacted By Healthcare Data Breach at Medical Device Company

by

ZOLL Medical Corporation recently began notifying more than one million individuals of a healthcare data breach. According to its website, ZOLL Medical develops novel resuscitation and acute critical...

Oregon Health System Uncovers 9-Year HIPAA Violation by Physician

by

Asante, an Oregon-based health system, has informed patients about a HIPAA violation caused by a physician who compromised protected health information (PHI) without a valid clinical need. For nearly...

Cerebral Notifies 3.1M Users of Healthcare Data Breach Stemming From Pixel Use

by

Telehealth platform Cerebral reported a healthcare data breach to HHS impacting more than 3.1 million individuals. Cerebral provides online therapy and medication management to millions of...

HHS, HSCC Release Guidance to Help Healthcare Align With NIST Cybersecurity Framework

by

HHS, through the Administration for Strategic Preparedness and Response (ASPR), and the Health Sector Coordinating Council (HSCC) Cybersecurity Working Group released the Cybersecurity Framework...

DC Health Link Healthcare Data Breach Exposes PHI of Congress Members

by

An unidentified threat actor has potentially exposed the personal health information (PHI) of hundreds of House of Representative members and staff in a recent healthcare data breach of health...

CISA, FBI Shed Light On Royal Ransomware Cyberattack Tactics

by

Royal ransomware is continuing to be used in aggressive cyberattacks against critical infrastructure. As previously reported, the group poses a significant threat to the healthcare sector. To help...