OCR Reports to Congress on HIPAA Compliance and Data Breaches in 2024
The Department of Health and Human Services (HHS) Office for Civil Rights (OCR) has submitted its annual reports to Congress…
Get The FREE
HIPAA Checklist
Discover everything you need to become HIPAA compliant
Get Free ChecklistThe Department of Health and Human Services (HHS) Office for Civil Rights (OCR) has submitted its annual reports to Congress…
Deanco Healthcare, LLC, the operator of Mission Community Hospital, an acute care hospital serving patients in the San Fernando Valley…
The owner and operator of a Michigan home health care company has been convicted of five counts of healthcare fraud…
A settlement has been agreed to resolve a class action lawsuit against Ciox Health, which does business as Datavant Group,…
A round-up of data breaches recently announced by 9 HIPAA-regulated entities: University of Nebraska Medical Center, Singing River Health System,…
Radiology Associates of Richmond in Virginia, one of the oldest, continuously operating private radiology practices in the United States, has…
Data breaches have been announced by Family Health Centers of San Diego, Totem Lake Family Dentistry, and Glendora Surgery Center….
Verizon has published its 2026 Data Breach Investigations Report, which shows that the healthcare sector continues to be targeted by…
A final rule updating the HIPAA Security Rule is due for release as early as May 2026. According to HHS/OCR,…
Artificial intelligence is rapidly reshaping healthcare, offering new ways to analyze data, support clinical decisions, streamline operations, and improve patient…
Hackers focus on medical records because the combination of demographic data, insurance details, clinical information, and financial identifiers creates a…
Most healthcare staff know that HIPAA exists, yet many may not really understand what HIPAA officers do or how those…
A round-up of data breaches recently announced by 9 HIPAA-regulated entities: University of Nebraska Medical Center, Singing River Health System,…
Radiology Associates of Richmond in Virginia, one of the oldest, continuously operating private radiology practices in the United States, has…
Data breaches have been announced by Family Health Centers of San Diego, Totem Lake Family Dentistry, and Glendora Surgery Center….
The diagnostic imaging service provider Lumexa Imaging has been affected by a security incident at one of its vendors. FMRS…
The Department of Health and Human Services (HHS) Office for Civil Rights (OCR) has submitted its annual reports to Congress…
The U.S. Department of Health and Human Services (HHS) has announced it is restructuring its Office for Civil Rights (OCR),…
The Department of Health and Human Services (HHS) Office for Civil Rights (OCR) has submitted a pair of reports to…
Choosing HIPAA training for employees should be about compliance outcomes, not simply checking the box for mandatory training...
Why AI Tools are Problem for HIPAA Compliance and how training can help.
Organizations must take care how social media is used to avoid HIPAA violations.
Why healthcare students need additional targeted HIPAA training.
First identify which standards your organization needs to comply with HIPAA compliant, then implement these.
HIPAA security training is required for all members of the workforce regardless of whether they have access to PHI or not.
Changes to HIPAA in 2025, including expected upcoming updates.
The HIPAA Safe Harbor Law (HR 7898) is an amendment to the HITECH Act passed by Congress in 2021 which…
New legislation – the Health Information Privacy Reform Act – has been introduced to improve privacy protections for health information…
A $182,000 settlement has been agreed between the HHS’ Office for Civil Rights and five Delaware healthcare providers to resolve…
Two hospitals have entered into settlement agreements with the Department of Health and Human Services (HHS) Office of Inspector General…
Healthcare providers participating in federal healthcare programs are advised to regularly check the HHS OIG Exclusions List to avoid penalties…
The U.S. Department of Health and Human Services Office of Inspector General has published its annual report on the Top…
Deanco Healthcare, LLC, the operator of Mission Community Hospital, an acute care hospital serving patients in the San Fernando Valley…
The owner and operator of a Michigan home health care company has been convicted of five counts of healthcare fraud…
A settlement has been agreed to resolve a class action lawsuit against Ciox Health, which does business as Datavant Group,…
Endue Software has agreed to pay $870,000 to settle a class action lawsuit that was filed in response to a…
American Multispecialty Group, doing business as Esse Health, a Missouri-based independent physician group serving the greater St. Louis area, experienced…
A former employee of Nuance Communications, a business associate of Geisinger Health System that provided IT and conversational AI services,…
Gandara Mental Health Center in Springfield, Massachusetts, has agreed to settle class action litigation stemming from a June 2024 cyberattack…
Oglethorpe, a Tampa, FL-based network of mental health and addiction recovery treatment facilities, was sued in response to a June…
Verizon has published its 2026 Data Breach Investigations Report, which shows that the healthcare sector continues to be targeted by…
An agreement has been reached between the state of Rhode Island and Deloitte Consulting LLP that will see the professional…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has announced a new initiative aimed at improving critical infrastructure cyber resilience…
Healthcare organizations are exposing a vast amount of patient data by failing to implement even basic security measures for DICOM…
A lawsuit has been filed in the U.S. District Court for the Northern District of California against two healthcare organizations over their use of an AI-based tool that records conversations…
The Department of Health and Human Services (HHS) Centers for Medicare and Medicaid Services (CMS) has launched the first wave of Health Tech Ecosystem tools as part of its initiative…
The use of technology and HIPAA compliance has become an increasingly complex subject due to the rapid adoption of technology in the health care and health insurance industries over the…
According to the Paubox 2026 Healthcare Email Security Report, in 2025, 170 email-related data breaches were reported to the HHS’…
Phishing has long been a leading cause of healthcare data breaches. Hackers target employees as they are a weak link…
The National HIPAA Summit, a leading forum on healthcare EDI, privacy, cybersecurity, and HIPAA compliance, will be hosting the Virtual…
On April 10, 2026, two days after the Occupational Safety and Health Administration’s (OSHA) Heat National Emphasis Program (NEP) expired, OSHA announced an update to the NEP. The updated NEP…
The Department of Labor Office of Inspector General will be conducting a federal audit to determine how well the Occupational Safety and Health Administration (OSHA) is addressing the growing problem…
The U.S. Department of Labor’s Occupational Safety and Health Administration (OSHA) has announced new initiatives to help employers develop and implement effective health and safety programs and meet federal workplace…
An agreement has been reached between the state of Rhode Island and Deloitte Consulting LLP that will see the professional…
Delta Dental Insurance and Delta Dental of New York (Delta Dental) have agreed to pay a fine of $2.25 million…
House Republicans have made a fresh attempt to introduce federal data privacy legislation that, if passed, will replace the current…
The HIPAA training requirements for new hires are that “a covered entity must provide training […] to each new member…
Choosing HIPAA training for employees should be about compliance outcomes, not simply checking the box for mandatory training. However, it…
HIPAA compliance training for business associates should include Security Rule security awareness training, applicable Privacy Rule training, Breach Notification Rule…
HIPAA certification for medical couriers is an industry-standard training credential that demonstrates a driver understands how to handle protected health…