Hackers Obtained the Data of BU Framingham Heart Study Participants
Boston University has notified all Framingham Heart Study participants that hackers have obtained their personal and medical information. Data breaches have also been announced by Rumpke Consolidated Companies, OrthopedicsNY, and IU Health. Boston University – Framingham Heart Study Data Breach Boston University (BU) has recently notified all Framingham Heart Study participants about a September 2024 hacking incident that saw hackers download participants’ personal and medical information. The Framingham Heart Study was founded in 1948 and was devised to determine the causes, characteristics, and common factors that contribute to cardiovascular disease. The Framingham Heart Study is the longest-running multi-generational heart study in the United States and some individuals have been participating for more than 75 years and enrolled their children and grandchildren in the study. All 15,448 participants have been affected by the data breach. The cyberattack occurred on September 8, 2024, and was interrupted by BU officials, although not in time to prevent sensitive data from...
December 23, 2024: Deadline for Compliance with the HIPAA Privacy Rule Reproductive Healthcare Final Rule
In April 2024, the HHS Office for Civil Rights (OCR) published the HIPAA Privacy Rule to Support Reproductive Healthcare Privacy Final Rule. The new rule took effect on June 23, 2024, and the compliance date for all but the Notice of Privacy Practices requirement is December 23, 2024. The Notice of Privacy Practices compliance deadline is February 16, 2026. Why Was the HIPAA Privacy Rule to Support Reproductive Healthcare Privacy Enacted? The new rule was a response to the Supreme Court’s decision in Dobbs v. Jackson Women’s Health Organization in 2022. The decision overturned Roe v. Wade which had guaranteed the constitutional right to abortion since 1973. Following the Supreme Court’s decision, the legality of abortion care was left to individual states to decide. As of December 2024, 13 U.S. states have banned abortions, 6 states have gestational limits of between 6 and 12 weeks, and 4 states have gestational limits between 18 and 22 weeks. Since the Supreme Court’s decision, healthcare providers, patients, and others have expressed concern that their protected health...
Please Take Our 5-Minute Annual HIPAA Survey
HIPAA Compliance for HIPAA Covered Entities The HIPAA Journal Annual Survey measures the level of HIPAA compliance in HIPAA-covered entities. >The survey is completely anonymous – no personal details are required. The survey consists of multiple choice questions and should take around 5 minutes to complete. >The survey results will be freely and publicly shared in The HIPAA Journal editorial and in our weekly newsletter. >The survey is not designed to assess HIPAA compliance for individuals or HIPAA compliance for Business Associates. Start the survey below Please select one answer from each of the multiple-choice options: This survey is now closed.
The HIPAA Breach Notification Rule
The Health Insurance Portability and Accountability Act of 1996 is one of the most important pieces of legislation to affect the healthcare industry, yet many healthcare providers and insurers are unaware of HIPAA obligations, in particular those relating to the HIPAA Breach Notification Rule. There has been considerable criticism of healthcare providers and insurance companies in recent months regarding the speed at which individuals affected by data breaches are notified that their healthcare data and personal information have been stolen, lost, or divulged to an unauthorized individual. With this in mind, and given the rise in the number of HIPAA data breaches in recent months, we have prepared a summary of the important elements of the HIPAA Breach Notification Rule to help healthcare organizations respond quickly to data breaches and stay HIPAA-compliant. Summary of the HIPAA Breach Notification Rule HIPAA Rules set standards that healthcare providers and other covered entities must follow in order to reduce the chance of patient data being exposed; however, even with the most...
Medical Practice Marketing
An effective medical practice marketing strategy can help ensure a consistent flow of new patients and maintain relationships with existing patients in order to support growth and profitability. However, when developing and executing a medical practice marketing strategy, it is important not to overlook regulatory requirements. Medical practice marketing has come a long way in the past quarter of a century. Twenty-five years ago, larger healthcare organizations dominated medical marketing due to having sizeable marketing teams, large advertising budgets, and significant purchasing power. Since then, the growth of the Internet has levelled the playing field, and now organizations of all sizes have the same marketing opportunities. Nonetheless, it is not always easy for smaller medical practices to take advantage of the opportunities. Some may have limited resources to dedicate to building a website, maintaining a blog, and promoting the website via social media. Others may have the resources, but not the knowledge to develop and execute an effective medical practice marketing...



