Data Breach News, Healthcare, News
November 29, 2024
654 views 14 secs 0

Ransom gang claims attack on NHS Alder Hey Children’s Hospital; Second attack on an NHS Trust this month

No ransomware gang has claimed responsiblity for the November 21 attack on the Wirral University Teaching Hospital NHS Trust but a second attack on a children’s hospital is also causing significant problems. The Register reports: The attack on Liverpool’s Alder Hey Children’s Hospital and Liverpool Heart and Chest Hospital NHS Foundation Trust is apparently unconnected […]

Legal News, Healthcare
November 10, 2024
769 views 56 secs 0

HIPAA Gets a Potential Counterpart in HISAA

Legislation proposed in September would mandate minimum cybersecurity requirements in the healthcare sector. Kevin Wood, the Chair of Winstead’s Healthcare Industry Group, writes: …. Senators Ron Wyden (D-OR) and Mark Warner (R-VA) introduced the Health Infrastructure Security and Accountability Act (HISAA) on September 26, 2024. Like HIPAA and HITECH before it, which established minimum levels […]

Legal News, Healthcare
October 29, 2024
736 views 9 secs 0

Exemptions from the Drug Supply Chain Security Act Enhanced Drug Distribution Security Requirements

Christopher R. Smith of Epstein Becker & Green, P.C. writes: On July 12, 2024, the FDA provided small dispensers—those employing 25 or fewer full-time pharmacists or pharmacy technicians—with an exemption from the Drug Supply Chain Security Act’s (“DSCSA”) enhanced drug distribution security (“EDDS”) requirements until November 27, 2026.[1]  The FDA had previously announced a stabilization period effectively delaying […]

Data Breach News, Healthcare, Insurance News, Malware Ransomware
October 18, 2024
1469 views 47 secs 0

Change Healthcare Ransomware Attack Cost to Rise to $2.87bn in 2024

The Change Healthcare ransomware attack that was first disclosed in February 2024 continues to cause problems and make headlines. HIPAA Journal reports on the financial impact: The cost of the Change Healthcare ransomware attack has risen to $2.457 billion, according to UnitedHealth Group’s Q3, 2024 earnings report.  Revenues in the third quarter increased by 9% year-over-year […]

Data Breach News, Healthcare, Vendor News
September 07, 2024
953 views 27 secs 0

Another 947K patient records found to be hacked in MOVEit breach

More than a year after other victims of the MOVEit hacking incident notified people, the the Centers for Medicare & Medicaid Services (CMS) and Wisconsin Physicians Service Insurance Corporation (WPS) are notifying people whose protected health information was acquired by the Clop gang: The MOVEit data breach may be long in the rear-view mirror, but […]

News, Data Breach News, Healthcare, Vendor News
August 07, 2024
805 views 35 secs 0

UK data watchdog to fine NHS vendor Advanced for security failures prior to LockBit ransomware attack

The 2022 ransomware attack on Advanced, a National Health Service (NHS) vendor, was devastating to patient care. Now the U.K.’s Information Commissioner’s Office has indicated it plans to impose a substantial fine on the vendor. TechCrunch reports: U.K. data protection authorities have issued a provisional fine of more than £6 million to NHS vendor Advanced […]

Data Breach News, Healthcare, Malware Ransomware
July 08, 2024
716 views 15 secs 0

Impact: Over 6,000 operations and appointments delayed by London ransomware attack

More than 6,000 operations and appointments have been postponed at London hospitals affected by the Synnovis cyber attack, NHS England has confirmed. Digital Health reports that on 4 July 2024, NHSE published an update on the ransomware attack. The update indicated that 4,913 acute outpatient appointments and 1,391 elective procedures have been postponed at King’s […]

Data Breach News, Healthcare, News
May 28, 2024
974 views 3 mins 0

At least 15 Cencora/Lash Group clients affected by hacking incident; more than 542,000 patients already notified

In February, Cencora (formerly known as AmerisourceBergen/Lash Group) filed notice of a cybersecurity incident with the Securities and Exchange Commission: On February 21, 2024, Cencora, Inc. (the “Company”), learned that data from its information systems had been exfiltrated, some of which may contain personal information. Upon initial detection of the unauthorized activity, the Company immediately took containment […]