Data Breach News, Healthcare
September 13, 2023
1105 views 5 secs 0

CrelioHealth leak exposed 28M+ patient records

Human error in configuring data storage continues to result in massive leaks or potential leaks of personal and sensitive health data. In today’s news, we learned that CrelioHealth left an Elasticsearch cluster exposed. Luckily for them, it was a whitehat researcher, Bob Diachenko of SecurityDiscovery, who spotted the problem and contacted them to alert them. […]

Healthcare, Legal News, News
September 11, 2023
1330 views 5 mins 0

L.A. Care Healthplan settles HHS OCR charges stemming from multiple violations for $1.3 million and corrective action plan

Today, the U.S. Department of Health and Human Services’ Office for Civil Rights (OCR) announced a settlement of potential violations of the Health Insurance Portability and Accountability Act (HIPAA) Rules with LA Care, the nation’s largest publicly operated health plan that provides health care benefits and coverage through state, federal, and commercial programs. OCR enforces the HIPAA […]

Data Breach News, Healthcare
September 07, 2023
1100 views 54 secs 0

The Government Isn’t Sure How to Get Small Hospitals to Take Cybersecurity Seriously

The U.S. government is struggling to convince hospitals that they need to spend time and money fighting hackers and provide useful advice to them, a problem that could have lethal consequences as the country’s ransomware crisis rages on. “I don’t think we’ve figured out how to talk to the small and medium-sized organizations in a […]

Healthcare, Legal News
September 07, 2023
512 views 3 mins 0

FTC Finalizes Order with 1Health.io Over Charges it Failed to Protect Privacy and Security of DNA Data and Unfairly Changed its Privacy Policy

The Federal Trade Commission finalized an order with 1Health.io that settles charges that the genetic testing firm left sensitive genetic and health data unsecured, deceived consumers about their ability to get their data deleted, and changed its privacy policy retroactively without adequately notifying consumers and obtaining their consent. In a complaint first announced in June 2023, the […]

Data Breach News, Healthcare, Malware Ransomware
September 01, 2023
1079 views 36 secs 0

Prospect Medical Holdings admits some confidential information was stolen in a cyberattack on Connecticut hospitals

Prospect Medical Holdings has now confirmed what already seemed clear to researchers and those who check leak sites. The threat actors did get files with personal information. Prospect Medical Holdings is confirming new details about a massive data theft from three Connecticut hospitals and others around the country in a nearly month-old cyber attack by a shadowy […]

Data Breach News, Healthcare
August 31, 2023
1249 views 51 secs 0

Prime Therapeutics/Magellan Rx discloses breach affecting BCBS of Minnesota members

Prime Therapeutics LLC / Magellan Rx has disclosed a breach that may have affected a subset of covered Blue Cross and Blue Shield of Minnesota members. According to their press release, on July 11, they became aware that an unauthorized actor obtained access to an employee’s mobile email account. That email account contained documents that included members’ personal […]