Data Breach News, Healthcare
October 19, 2023
1230 views 17 secs 0

Home health provider Personal Touch to pay $350,000 to NYS in data breach settlement

Newsday reports: A Lake Success-based home health care company reached a $350,000 settlement with the state after failing to protect the health care data of more than 316,800 New Yorkers, the state attorney general said Wednesday. Personal Touch Holding Corp., which provides home health care and hospice services through subsidiary companies, had an “informal and […]

Healthcare, Legal News
September 27, 2023
1245 views 3 mins 0

Colorado Attorney General announces settlement with Broomfield skilled nursing facility over 2021 data breach

Colorado Attorney General Phil Weiser announced a settlement with Broomfield Skilled Nursing and Rehabilitation Center, LLC. The settlement arose from a 2021 data breach affecting patient and employee data. The state claimed that Broomfield violated a number of state laws that are specifically identified in the assurance of discontinuance (settlement). The following is the press […]

Data Breach News, Healthcare
September 13, 2023
1409 views 5 secs 0

CrelioHealth leak exposed 28M+ patient records

Human error in configuring data storage continues to result in massive leaks or potential leaks of personal and sensitive health data. In today’s news, we learned that CrelioHealth left an Elasticsearch cluster exposed. Luckily for them, it was a whitehat researcher, Bob Diachenko of SecurityDiscovery, who spotted the problem and contacted them to alert them. […]

Healthcare, Legal News, News
September 11, 2023
1732 views 5 mins 0

L.A. Care Healthplan settles HHS OCR charges stemming from multiple violations for $1.3 million and corrective action plan

Today, the U.S. Department of Health and Human Services’ Office for Civil Rights (OCR) announced a settlement of potential violations of the Health Insurance Portability and Accountability Act (HIPAA) Rules with LA Care, the nation’s largest publicly operated health plan that provides health care benefits and coverage through state, federal, and commercial programs. OCR enforces the HIPAA […]

Data Breach News, Healthcare
September 07, 2023
1428 views 54 secs 0

The Government Isn’t Sure How to Get Small Hospitals to Take Cybersecurity Seriously

The U.S. government is struggling to convince hospitals that they need to spend time and money fighting hackers and provide useful advice to them, a problem that could have lethal consequences as the country’s ransomware crisis rages on. “I don’t think we’ve figured out how to talk to the small and medium-sized organizations in a […]

Healthcare, Legal News
September 07, 2023
784 views 3 mins 0

FTC Finalizes Order with 1Health.io Over Charges it Failed to Protect Privacy and Security of DNA Data and Unfairly Changed its Privacy Policy

The Federal Trade Commission finalized an order with 1Health.io that settles charges that the genetic testing firm left sensitive genetic and health data unsecured, deceived consumers about their ability to get their data deleted, and changed its privacy policy retroactively without adequately notifying consumers and obtaining their consent. In a complaint first announced in June 2023, the […]

Data Breach News, Healthcare, Malware Ransomware
September 01, 2023
1359 views 36 secs 0

Prospect Medical Holdings admits some confidential information was stolen in a cyberattack on Connecticut hospitals

Prospect Medical Holdings has now confirmed what already seemed clear to researchers and those who check leak sites. The threat actors did get files with personal information. Prospect Medical Holdings is confirming new details about a massive data theft from three Connecticut hospitals and others around the country in a nearly month-old cyber attack by a shadowy […]