Lawsuit Alleges AI Platform Illegally Recorded Patient-Clinician Conversations
A lawsuit has been filed in the U.S. District Court for the Northern District of California against two healthcare organizations…
A lawsuit has been filed in the U.S. District Court for the Northern District of California against two healthcare organizations…
Rocky Mountain Associated Physicians has reported a data breach affecting more than 50,000 patients. Data breaches have also been announced…
CardioFit Medical Group has discovered emails containing protected health information were inadvertently sent without encryption. Interventional Pain Center in Tennessee…
Phishing has long been a leading cause of healthcare data breaches. Hackers target employees as they are a weak link…
In May 2025, the Ohio health system Kettering Adventist Healthcare (Kettering Health) experienced a ransomware attack. The attack was detected…
On April 10, 2026, two days after the Occupational Safety and Health Administration’s (OSHA) Heat National Emphasis Program (NEP) expired,…
Data breaches have recently been announced by DermCare Management in Florida, Option Care Health in New York, and Aetna in…
In February 2026, 63 data breaches were reported to the Department of Health and Human Services (HHS) Office for Civil…
Artificial intelligence is rapidly reshaping healthcare, offering new ways to analyze data, support clinical decisions, streamline operations, and improve patient…
Hackers focus on medical records because the combination of demographic data, insurance details, clinical information, and financial identifiers creates a…
Most healthcare staff know that HIPAA exists, yet many may not really understand what HIPAA officers do or how those…
Criminals target medical records because they are valuable, and misuse of medical records is harder to detect than the misuse…
Rocky Mountain Associated Physicians has reported a data breach affecting more than 50,000 patients. Data breaches have also been announced…
CardioFit Medical Group has discovered emails containing protected health information were inadvertently sent without encryption. Interventional Pain Center in Tennessee…
In May 2025, the Ohio health system Kettering Adventist Healthcare (Kettering Health) experienced a ransomware attack. The attack was detected…
Data breaches have recently been announced by DermCare Management in Florida, Option Care Health in New York, and Aetna in…
A lawsuit has been filed in the U.S. District Court for the Northern District of California against two healthcare organizations…
In February 2026, 63 data breaches were reported to the Department of Health and Human Services (HHS) Office for Civil…
Earlier this year, Paula M. Stannard, Director of the Department of Health and Human Services (HHS) Office for Civil Rights…
Choosing HIPAA training for employees should be about compliance outcomes, not simply checking the box for mandatory training...
Why AI Tools are Problem for HIPAA Compliance and how training can help.
Organizations must take care how social media is used to avoid HIPAA violations.
Why healthcare students need additional targeted HIPAA training.
First identify which standards your organization needs to comply with HIPAA compliant, then implement these.
HIPAA security training is required for all members of the workforce regardless of whether they have access to PHI or not.
Changes to HIPAA in 2025, including expected upcoming updates.
The HIPAA Safe Harbor Law (HR 7898) is an amendment to the HITECH Act passed by Congress in 2021 which…
New legislation – the Health Information Privacy Reform Act – has been introduced to improve privacy protections for health information…
A $182,000 settlement has been agreed between the HHS’ Office for Civil Rights and five Delaware healthcare providers to resolve…
Two hospitals have entered into settlement agreements with the Department of Health and Human Services (HHS) Office of Inspector General…
Healthcare providers participating in federal healthcare programs are advised to regularly check the HHS OIG Exclusions List to avoid penalties…
The U.S. Department of Health and Human Services Office of Inspector General has published its annual report on the Top…
Concord Orthopaedics Professional Association, a New Hampshire-based provider of comprehensive orthopedic and rheumatology care, has settled a consolidated class action…
A $1,450,000 settlement has been agreed upon to resolve a class action lawsuit against the New York orthopedic medicine and…
Cardiovascular Consultants in Arizona has settled a class action lawsuit stemming from a 2023 data breach involving the protected health…
Iowa Attorney General Brenna Bird has filed a lawsuit against Change Healthcare, UnitedHealth Group, and Optum over the February 2024…
Eye Physicians of Central Florida has agreed to settle a class action lawsuit stemming from a 2023 data breach that…
A settlement has been reached to resolve class action data breach litigation against Excelsior Orthopaedics and Buffalo Surgery Center. The…
Balance Autism has agreed to settle a class action lawsuit stemming from a security incident that exposed patient information. Altoona,…
In June of last year, we reported that a settlement had been agreed to resolve a class action lawsuit against…
In 2025, another unwanted record was set for losses to cybercrime, with almost $21 billion in reported losses, beating the…
Two critical vulnerabilities have been identified in Progress Software’s ShareFile service. The flaws could potentially be chained by an unauthenticated…
Cybersecurity researchers warn that there could potentially be mass exploitation of a critical flaw in Citrix NetScaler products on a…
Healthcare has retained its position as the industry most targeted by cyber actors, an unwanted accolade that the sector has…
A lawsuit has been filed in the U.S. District Court for the Northern District of California against two healthcare organizations over their use of an AI-based tool that records conversations…
The Department of Health and Human Services (HHS) Centers for Medicare and Medicaid Services (CMS) has launched the first wave of Health Tech Ecosystem tools as part of its initiative…
The use of technology and HIPAA compliance has become an increasingly complex subject due to the rapid adoption of technology in the health care and health insurance industries over the…
Phishing has long been a leading cause of healthcare data breaches. Hackers target employees as they are a weak link…
According to the Paubox 2026 Healthcare Email Security Report, in 2025, 170 email-related data breaches were reported to the HHS’…
The National HIPAA Summit, a leading forum on healthcare EDI, privacy, cybersecurity, and HIPAA compliance, will be hosting the Virtual…
On April 10, 2026, two days after the Occupational Safety and Health Administration’s (OSHA) Heat National Emphasis Program (NEP) expired, OSHA announced an update to the NEP. The updated NEP…
The Department of Labor Office of Inspector General will be conducting a federal audit to determine how well the Occupational Safety and Health Administration (OSHA) is addressing the growing problem…
The U.S. Department of Labor’s Occupational Safety and Health Administration (OSHA) has announced new initiatives to help employers develop and implement effective health and safety programs and meet federal workplace…
The Maine House of Representatives has voted unanimously to advance a bill that seeks to strengthen cybersecurity at Maine hospitals…
Texas Governor Greg Abbot has ordered all state agencies and state-owned medical facilities to conduct an audit of patient monitoring…
At a Thursday hearing, the Senate Health, Education, Labor and Pensions (HELP) Committee heard testimony from Thomas Keane, M.D., M.B.A.,…
HIPAA certification for medical couriers should cover the HIPAA Privacy Rule, HIPAA Security Rule, and HIPAA Breach Notification Rule, and…
Healthcare staff need HIPAA training for social media because a single post, photo, or comment can expose Protected Health Information…
Emergencies in healthcare are not limited to extreme weather, wildfires, or other natural disasters. Today’s most disruptive incidents are just…
Physical therapists must receive documented HIPAA training that covers the HIPAA Privacy Rule, HIPAA Security Rule, and HIPAA Breach Notification…