Former CPA Sentenced for Laundering Stolen Children’s Healthcare of Atlanta Funds
A business email compromise (BEC) attack on a vendor of Children’s Healthcare of Atlanta in 2023 resulted in $5.3 million in funds being stolen. While it is unclear if the hacker has been identified and will face justice, a former certified public accountant who conspired with the hacker has been sentenced for attempting to launder the stolen funds. The hacker compromised the email account of a vendor of Children’s Healthcare of Atlanta that provided furniture and other supplies. On or around June 13, 2023, the hacker impersonated the vendor and requested a change to the vendor’s automatic clearinghouse electronic payment instructions. When the vendor was paid, the funds were directed to a bank account belonging to former CPA and Atlanta business owner Ronald Deabler, 66. According to court documents, Deabler conspired with the hacker to distribute the stolen funds in exchange for a commission. Deabler opened a second account and tried to transfer the funds; however, the bank would not transfer the entire amount, and only around $1 million of the funds were transferred. Around $3.5...
Banner Health; LifeStance Health Group Settle Tracking Technology Lawsuits
Two healthcare providers have agreed to settle lawsuits over their use of pixels and other website tracking technologies. The tools allegedly resulted in the disclosure of patient data to the third-party providers of those tools, without the knowledge or consent of website users. Banner Health Pixel Settlement Banner Health is a Phoenix, Arizona-based health system that operates 33 hospitals in six U.S. states. Banner Health faced multiple class action lawsuits over its use of pixels and other tracking and analytics tools on its website between June 1, 2020, and November 22, 2023, which were alleged to have disclosed sensitive information to Meta Platforms (Facebook) and Google LLC. The lawsuits were consolidated into a single action – McCulley, et al. v. Banner Health – as they had overlapping claims. The consolidated lawsuit, which names 8 individuals as class representatives, was filed in the District Court for Weld County in the State of Colorado. The lawsuit asserted claims for breach of confidence, violation of the Electronic Communications Privacy Act...
Soniva Dental Care Data Breach Affects At Least 30,000 Patients
Data breaches have been announced by Soniva Dental Care in Texas, Optalis Management Solutions in Michigan, and Hudson Valley Medical Billing & Credentialing in New York. Soniva Dental Care Soniva Dental Care, a San Antonio, Texas-headquartered provider of dental services, orthodontics, and cosmetic dentistry across 14 locations, has recently disclosed a cybersecurity incident affecting patients of several of its practices. On May 26, 2026, Soniva Dental Care was informed by its IT support company about suspicious remote access sessions. It rapidly became apparent that its remote desktop web services infrastructure was under attack, and IT resources were shifted to containing the incident, terminating all external communications, disabling accounts with remote desktop access, and locking down its infrastructure. Soniva Dental Care said its patient record system was quickly restored and its archive data was unaffected. While the incident was rapidly detected and contained, it was not possible to rule out unauthorized access to patient data. Files exposed in the incident were...
Global Data Breach Cost Rises 12% to Almost $5 Million
The IBM 2026 Cost of a Data Breach Study shows data breach costs have risen by 12% in a year to almost $5 million, with the United States facing the highest breach costs. In 2026, the average cost of a data breach in the United States was $11.5 million – more than double the average global data breach cost. Healthcare continues to face the highest breach costs, with an average cost of $6.64 million per incident, although healthcare data breach costs have fallen by 10.5% year-over-year from a global average of $7.42 million in 2025. Data breach costs increased in all sectors represented in the study, with the rise largely driven by increases in detection, escalation, and lost business costs. In healthcare, 59% of breaches were malicious or criminal attacks, 26% were due to IT failures, and 13% were due to human error. Across all sectors, phishing (voice and SMS phishing) accounted for 17% of breaches and was the most common initial access vector and had an average breach cost of $5.9 million. The next most common vectors were supply chain compromise, abuse of valid accounts,...
What is a HIPAA Audit Checklist?
A HIPAA audit checklist is a document covered entities and business associates should use to audit compliance with the standards of the HIPAA Administrative Simplification Regulations applicable to their operations. An internal HIPAA audit checklist differs from an external HIPAA audit checklist inasmuch as an external HIPAA audit checklist is designed to meet specific criteria of the OCR audit protocol, CMS’ compliance review program, or a third-party’s certification requirements. By comparison, an internal HIPAA audit checklist is a comprehensive document that covers all areas of an organization’s compliance obligations. However, as different organizations have different compliance obligations, there is no “one-size-fits-all” internal HIPAA audit checklist. Get The HIPAA Audit Checklist Free and Immediate Download Please enable JavaScript in your browser to complete this form.Business Email *Name *FirstLastWork Number *Company Name *Number of EmployeesNumber of Employees1 - 5051 - 500501+Download Free Checklist Delivered via email so please ensure you enter your...



