Data Breaches

UHS Health System Ransomware Attack, Security Probed by Senator

by Jessica Davis

Sen. Mark Warner, D-Virginia, sent a letter to Universal Health Services CEO Alan Miller, demanding answers into the health system’s cybersecurity policies in light of the September...

CHS Settles with 28 States for $5M Over 2014 Data Breach of 6.1M

by Jessica Davis

Tennessee-based Community Health Systems (CHS) reached a $5 million settlement with 28 states to resolve an investigation into its massive data breach that impacted 6.1 million patients...

UPDATE: UHS Health System Confirms All US Sites Affected by Ransomware Attack

by Jessica Davis

Universal Health Services, one of the largest US health systems, confirmed on October 3 that the ransomware attack reported last week has affected all of its US care sites and hospitals, spurring...

Anthem Settles with 44 States for $40M Over 2014 Breach of 78.8M

by Jessica Davis

A multi-state coalition made up of 44 states and Washington, D.C reached a $39.5 million settlement with Anthem, to resolve breach claims stemming from the...

Ransomware Spurs EHR Downtime at UHS Health System, 3 More Providers

by Jessica Davis

Universal Health Services is currently recovering from a ransomware attack across its 400 locations, with facilities leveraging back-up processes and paper documentation to...

Premera Pays OCR $6.85M to Settle HIPAA Violations, Breach of 10.4M

by Jessica Davis

The Department of Health and Human Services Office for Civil Rights settled with Premera Blue Cross for $6.85 million and a corrective action plan, after an audit into the insurer’s...

OCR Settles With Business Associate CHSPSC for $2.3 Over Breach of 6M

by Jessica Davis

The Department of Health and Human Services Office for Civil Rights reached a $2.3 million settlement with CHSPSC, which provides services to hospitals and...

Senators Probe VA After Data Breach Affecting 46K Veterans, Providers

by Jessica Davis

A group of Democratic Senators led by Jon Tester, D-Montana, is demanding answers from the Department of Veterans Affairs after a reported data breach that impacted the personal and...

Ransomware Hacking Groups Post Data from 5 Healthcare Entities

by Jessica Davis

The hacking groups behind Pysa, or Mespinoza, SunCrypt, REvil, and NetWalker ransomware variants posted data allegedly stolen from five separate healthcare...

1M Inova Health Individuals Added to Blackbaud Breach Victim Tally

by Jessica Davis

The Blackbaud breach victim tally has climbed to nearly 3 million healthcare-connected entities and other nonprofits. In the last week, Inova Health System reported more than 1 million...

Assured Imaging Ransomware Causes Data Theft Affecting 245K Patients

by Jessica Davis

Arizona-based Assured Imaging is notifying 244,813 patients that some of their data was potentially exfiltrated after a ransomware attack in May.  On May 19, Assured...

112K Patients Impacted by Utah Pathology Services Email Hack

by Jessica Davis

Utah Pathology Services is notifying 112,000 patients that their data was potentially affected after the hack of an employee email account in June.  Discovered on June 30, a hacker...

Ransomware Attack Impacts Medical Debt Collections Firm R1 RCM

by Jessica Davis

Medical debt collections firm R1 RCM recently confirmed its systems were taken down in response to a ransomware attack that lasted for at least a week, according to KrebsOnSecurity.  R1...

Blackbaud Ransomware Hack Affects 657K Maine Health System Donors

by Jessica Davis

A ransomware attack on healthcare business associate Blackbaud compromised the data from 657,392 donors, potential donors, and patients who support the Northern Light Health...

9 GitHub Repositories Found Leaking Health Data from Over 150K Patients

by Jessica Davis

Improper access controls have left the data of more than 150,000 to 200,000 patients, and likely more, exposed online in at least nine GitHub repositories, shining a light on the need for...

Medical Software Database Exposes Personal Data of 3.1M Patients

by Jessica Davis

A medical software company’s database containing the personal information of more than 3.1 million patients was left exposed online without the need for a password or other authorization,...

Ransomware Hackers Post Data From 2 Providers, Device Manufacturer

by Jessica Davis

NetWalker and DoppelPayer ransomware threat actors posted data from three healthcare entities to their dark web blog in the last week, including a rehabilitation center, fertility...

Moderna COVID-19 Vaccine Data Targeted by Nation-State Hackers

by Jessica Davis

Massachusetts-based Moderna, a research firm currently tasked with the development of a COVID-19 vaccine, was targeted by hackers with ties to the government of China, in an effort designed to...

National Cardiovascular Partners Email Hack Impacts 78K Patients

by Jessica Davis

National Cardiovascular Partners recently notified 78,070 patients that their data was potentially compromised after an attacker gained access to an employee email account.  According to its...

Lorien Health Services Ransomware Attack Impacts 48K Patients

by Jessica Davis

Maryland Health Services, DBA Lorien Health Services, recently reported that a June ransomware attack on its systems potentially breached the data of 47,754 patients. Lorien...