25% off all training courses Offer ends May 29, 2026
View HIPAA Courses
25% off all training courses
View HIPAA Courses
Offer ends May 29, 2026

The HIPAA Journal is the leading provider of HIPAA training, news, regulatory updates, and independent compliance advice.

North Ottawa Medical Group Notifies 22,000 of Bizmatics Breach

North Ottawa Medical Group (NOMG) has notified 22,000 of its patients that they have been impacted by a malware infection that was discovered by its EMR management company, Bizmatics. NOMG joins a long list of organizations that have been impacted by the breach.

The latest announcement takes the total number of patients affected by the security breach to over 265,000 individuals. The data potentially exposed as a result of the malware infection on Bizmatics’ server include patients’ names, addresses, health visit data, treatment information, health insurance information, and in some cases, Social Security numbers. The last four digits of payment cards could potentially also have been exposed.

Patients affected by the breach had previously sought medical services at NOMG’s Internal Medicine, Family Practice, or Women’s Health physician practices.

The investigation into the security incident conducted by Bizmatics did not uncover evidence to suggest that patient data had in fact been accessed by unauthorized individuals. The company also could not confirm whether the malware was installed on the server in order to gain access to patient health data, although the possibility could not be ruled out.

Get The FREE
HIPAA Compliance Checklist

Immediate Delivery of Checklist Link To Your Email Address

Please Enter Correct Email Address

Your Privacy Respected

HIPAA Journal Privacy Policy

Because there is a risk that patient data were accessed and could be used inappropriately, NOMG has offered affected patients a year of credit monitoring services without charge.

Uncommon Care Reports Network Server Hacking Incident

Uncommon Care, an Angier, North Carolina-based provider of urgent and primary care has also reported a potential data breach to the Office for Civil Rights that has impacted 13,674 patients. The breach involved the hacking of a network server. A substitute breach notice has not been placed on the organization’s website, so the specifics of the cyberattack are currently unknown.

However, there is a high probability that Uncommon Care is also a victim of the malware attack on Bizmatics. As with the other healthcare organizations impacted by the cyberattack on San Jose-based Bizmatics, Uncommon Care uses the PrognoCIS EMR management tool.

Author: Steve Alder is the editor-in-chief of The HIPAA Journal. Steve is responsible for editorial policy regarding the topics covered in The HIPAA Journal. He is a specialist on healthcare industry legal and regulatory affairs, and has 10 years of experience writing about HIPAA and other related legal topics. Steve has developed a deep understanding of regulatory issues surrounding the use of information technology in the healthcare industry and has written hundreds of articles on HIPAA-related topics. Steve shapes the editorial policy of The HIPAA Journal, ensuring its comprehensive coverage of critical topics. Steve Alder is considered an authority in the healthcare industry on HIPAA. The HIPAA Journal has evolved into the leading independent authority on HIPAA under Steve’s editorial leadership. Steve manages a team of writers and is responsible for the factual and legal accuracy of all content published on The HIPAA Journal. Steve holds a Bachelor’s of Science degree from the University of Liverpool. You can connect with Steve via LinkedIn or email via stevealder(at)hipaajournal.com

x

Is Your Organization HIPAA Compliant?

Find Out With Our Free HIPAA Compliance Checklist

Get Free Checklist