Multi-million-dollar Settlement Agreed to Resolve MCNA Dental Data Breach Lawsuit
A settlement has been agreed to resolve class action data breach litigation against Managed Care of North America (MCNA), Inc.,…
Get The FREE
HIPAA Checklist
Discover everything you need to become HIPAA compliant
Get Free ChecklistA settlement has been agreed to resolve class action data breach litigation against Managed Care of North America (MCNA), Inc.,…
The national retail company Spencer Gifts LLC has agreed to a $450,000 settlement to resolve alleged violations of the HIPAA…
HIPAA violation cases are compliance investigations that result from a data breach being reported to the Department of Health and…
iRhythm Holdings Inc., a publicly traded heart monitoring device manufacturer, has notified the U.S. Securities and Exchange Commission (SEC) about…
A settlement has been finalized to resolve a litigation against Flo Health, Inc., Google LLC, and Flurry, Inc., over the…
A hacking group has claimed responsibility for the cyberattack on the pharmaceutical company Novo Nordisk and says it exfiltrated more…
Compliancy Group has acquired Healthicity in a deal that combines two healthcare compliance software companies and expands Compliancy Group’s platform…
Data breaches have been announced by the Tennessee-based disability care provider Open Arms Care Corporation and the Rhode Island and…
The healthcare industry has the highest rate of third-party data breaches out of any sector, according to the Verizon Data…
A final rule updating the HIPAA Security Rule is due for release as early as May 2026. According to HHS/OCR,…
Artificial intelligence is rapidly reshaping healthcare, offering new ways to analyze data, support clinical decisions, streamline operations, and improve patient…
Hackers focus on medical records because the combination of demographic data, insurance details, clinical information, and financial identifiers creates a…
HIPAA violation cases are compliance investigations that result from a data breach being reported to the Department of Health and…
iRhythm Holdings Inc., a publicly traded heart monitoring device manufacturer, has notified the U.S. Securities and Exchange Commission (SEC) about…
A hacking group has claimed responsibility for the cyberattack on the pharmaceutical company Novo Nordisk and says it exfiltrated more…
Data breaches have been announced by the Tennessee-based disability care provider Open Arms Care Corporation and the Rhode Island and…
The national retail company Spencer Gifts LLC has agreed to a $450,000 settlement to resolve alleged violations of the HIPAA…
Compliancy Group has acquired Healthicity in a deal that combines two healthcare compliance software companies and expands Compliancy Group’s platform…
The parents of a 15-year-old child have filed a lawsuit against a Minnesota hospital for failing to provide them with…
Choosing HIPAA training for employees should be about compliance outcomes, not simply checking the box for mandatory training...
Why AI Tools are Problem for HIPAA Compliance and how training can help.
Organizations must take care how social media is used to avoid HIPAA violations.
Why healthcare students need additional targeted HIPAA training.
First identify which standards your organization needs to comply with HIPAA compliant, then implement these.
HIPAA security training is required for all members of the workforce regardless of whether they have access to PHI or not.
Changes to HIPAA in 2025, including expected upcoming updates.
The HIPAA Safe Harbor Law (HR 7898) is an amendment to the HITECH Act passed by Congress in 2021 which…
New legislation – the Health Information Privacy Reform Act – has been introduced to improve privacy protections for health information…
A $182,000 settlement has been agreed between the HHS’ Office for Civil Rights and five Delaware healthcare providers to resolve…
The Department of Health and Human Services Office of Inspector General (HHS-OIG) has announced new additions to its List of…
Two hospitals have entered into settlement agreements with the Department of Health and Human Services (HHS) Office of Inspector General…
Healthcare providers participating in federal healthcare programs are advised to regularly check the HHS OIG Exclusions List to avoid penalties…
A settlement has been agreed to resolve class action data breach litigation against Managed Care of North America (MCNA), Inc.,…
A settlement has been finalized to resolve a litigation against Flo Health, Inc., Google LLC, and Flurry, Inc., over the…
FMC Services LLC, the operator of a network of primary care clinics in Amarillo and Canyon, Texas, experienced a cyberattack…
A $35,000,000 settlement has been agreed to resolve a long-running class action lawsuit against Labcorp over a 2018 cybersecurity incident…
Two more healthcare providers have settled lawsuits over their use of website tracking technologies: Duke University Health System and Derick…
Henderson & Walton Women’s Center, a Birmingham, AL-based provider of women’s healthcare services, has agreed to settle a class action…
A breach of the email account of an employee of Onsite Women’s Health that exposed the protected health information of…
Mt. Baker Imaging and Northwest Radiologists have agreed to pay $3,300,000 to settle a consolidated class action lawsuit stemming from…
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a Binding Operational Directive (BOD 26-04) establishing new deadlines for vulnerability…
Patches have been issued to fix a critical vulnerability affecting Check Point Mobile Access, SSL VPN, Remote Access VPN, and…
The Senate Health, Education, Labor, and Pensions (HELP) Committee Chair Senator Bill Cassidy, M.D. (R-LA), is seeking answers from NYC…
The Health Sector Coordinating Council (HSCC) AI cybersecurity governance task force has published new guidance for healthcare CISOs and other…
A lawsuit has been filed in the U.S. District Court for the Northern District of California against two healthcare organizations over their use of an AI-based tool that records conversations…
The Department of Health and Human Services (HHS) Centers for Medicare and Medicaid Services (CMS) has launched the first wave of Health Tech Ecosystem tools as part of its initiative…
The use of technology and HIPAA compliance has become an increasingly complex subject due to the rapid adoption of technology in the health care and health insurance industries over the…
According to the Paubox 2026 Healthcare Email Security Report, in 2025, 170 email-related data breaches were reported to the HHS’…
Phishing has long been a leading cause of healthcare data breaches. Hackers target employees as they are a weak link…
The National HIPAA Summit, a leading forum on healthcare EDI, privacy, cybersecurity, and HIPAA compliance, will be hosting the Virtual…
On April 10, 2026, two days after the Occupational Safety and Health Administration’s (OSHA) Heat National Emphasis Program (NEP) expired, OSHA announced an update to the NEP. The updated NEP…
The Department of Labor Office of Inspector General will be conducting a federal audit to determine how well the Occupational Safety and Health Administration (OSHA) is addressing the growing problem…
The U.S. Department of Labor’s Occupational Safety and Health Administration (OSHA) has announced new initiatives to help employers develop and implement effective health and safety programs and meet federal workplace…
The HIPAA Journal has compiled healthcare data breach statistics from October 2009, when the Department of Health and Human Services…
California Attorney General Rob Bonta has filed a lawsuit against the genetic testing company formerly known as 23andMe over its…
The Cybersecurity and Infrastructure Security Agency (CISA) has announced a revised schedule of virtual town hall meetings for its Cyber…
Medical spas that qualify as HIPAA-Covered Entities should provide all members of their workforce with HIPAA training that covers foundational…
Free HIPAA training can be a steppingstone to a better understanding of HIPAA rules and regulations and improved patient outcomes…
The HIPAA Security Rule training requirements mandate HIPAA-Covered Entities and HIPAA Business Associates to provide workforce security awareness training that…
The HIPAA training requirements for new hires are that “a covered entity must provide training […] to each new member…