St. Peter’s Surgery & Endoscopy Center in New York has been hit by a malware infection which could have allowed hackers to access medical records of up to 135,000 patients. This is the second biggest healthcare data breach of 2018, so far, and the largest to be...
83% of Breached Healthcare Records in January Due to Hacking
The most recent release of the Protenus Healthcare Breach Barometer report has been released. Protenus reports that in total, at least 473,807 patient records were accessed or stolen in January, although the number of people affected by 11 of the 37 breaches is not...
6,550 Jemison Internal Medicine Patients Affected by Ransomware Attack
A ransomware attack on Jemison Internal Medicine of Alabama on December 20, 2017 lead to electronic health records being encrypted, disabling access to the patient data for the healthcare provider. A ransom demand was sent for the keys to disable the encryption...
Multiple Firings a Medical University of South Carolina’s Due to HIPAA Violations
A recent report published in the Post and Courier revealed that the Medical University of South Carolina (MUSC) fired 13 employees last year for violating HIPAA Rules by prying on patient records. Overall, there were 58 privacy breaches in 2017 at MUSC, all of which...
White and Bright Family Dental Servers Hacked
White and Bright Family Dental has found that one of its data servers storing patients’ private data has been hacked. Access to the Fresno, CA-based server was obtained by the hackers on January 30, 2018. The Fresno Police Department was quickly made aware of the...
Hacker Behind FruitFly Malware on University of Virginia Health System
Around 1,900 people who were treated by the University of Virginia Health System are being contacted to be made aware that a hacker has gained access to their medical information using a malware infection. The malware in question had been loaded onto the devices in...
Business Associate of Sutter Health Hit in Phishing Attack
Sutter Health is alerting a number of clients that some of their protected health information may have been accessed in a phishing attack on one of its business associates – the Salem and Green legal firm. On approximately October 11, 2017, a phishing email was opened...
Zoom Video Conferencing and HIPAA Compliance
Over 750,000 businesses are now using Zoom for online video and web conferencing. However, before implementing use of the service it is vital to consider if it adheres to HIPAA Rules for appropriate use by healthcare groups in relation to sharing PHI. A cloud-based...
Hospital Data Breach Similarities Shown in AJMC Study
The American Journal of Managed Care has released a report detailing hospital data breaches experienced in the United States. The focus of the study was to discover common characteristics of hospital data breaches, what the biggest issue areas are, the main causes of...
MediaPro Reports Lows Scores on Healthcare Sector Security Awareness
A recent MediaPro report released there is still an absence of readiness to deal with common cyberattacks and privacy and security dangers are still not fully comprehended by healthcare staff. In MediaPro’s 2017 State of Privacy and Security Awareness Report, the firm...
HIV Status Data Breach: Aetna Seeking $20 Million Compensation
Aetna has begun a legal action to claim compensation from an administrative support firm in relation to a July 2017 data violation in which details of HIV medications visible through transparent plastic windows of envelopes in a mail shot. Letters inserted in some of...
36,000 Affected in Major Triple-S Advantage Data Breach
A privacy breach has been experienced by the Puerto Rico Health Plan Triple-S Advantage. The breach, which affected 36,000 plan members, was due to a mailing mistake which saw sensitive information of plan subscribers disclosed to incorrect people. The released...
925 Patients Impacted by Coastal Cape Fear Eye Associates Ransomware
The protected health information (PHI) of 925 patients of Coastal Cape Fear Eye Associates has been compromised in a ransomware attack. North Carolina’s Coastal Cape Fear Eye Associates, P.A., found that its systems had been breached on December 5 2017. Upon noticing...
$100k FileFax HIPAA Fine Issued Despite Company Ceasing to Exist
Even when HIPAA-compliant businesses close down the obligation to abide by HIPAA Rules does not cease to exist. This was highlighted recently when FileFax, a Northbrook, IL-based firm that offers medical record storage, maintenance, and delivery services for HIPAA...
Email Account Breach at Ron’s Pharmacy Services
Ron’s Pharmacy Services , based in San Diego, has reported that an email account that held limited protected health information has been accessed by an unknown person. Suspicious activity was noticed on a staff member’s email account on October 3, 2017 leading to an...
Malware-Related Data Breach Experienced at Decatur County General Hospital
A hacker has potentially gained access to the medical records of up to 24,000 patients of Decatur County General Hospital in Tennessee. Teh Helath centre has discovered malware has been placed on a server storing its internal electronic medical record system. A...
Breach of PHI at Partners HealthCare Affects 2,600 Patients
The protected health information of approximately 2,600 patients of Partners HealthCare System has been sent notifications that their PHI may have been compromised is a HIPAA breach. Even though health care organizations covered by HIPAA are given 60 days following...
Western Washington Medical has PHI of 842 Patients Exposed
Western Washington Medical experienced a PHI breach when the protected health information of 842 patients of Group was exposed in November 2017 after files including sensitive health information were disposed, in error, with normal rubbish. On November 13, 2017, the...
2,600 Patients of Partners HealthCare Notified of May 2017 Breach
Partners HealthCare System is making contact with around 2,600 patients to advise them that, potentially, some of their protected health information (PHI) may have been accessed. Even though HIPAA covered bodies have up to 60 days after the identification of a breach...
CarePlus Notifies 11,200 Health Plan Members of PHI Breach
Florida-based CarePlus Health Plans has experienced a PHI breach incident which has seen certain plan members’ protected health information disclosed, in error, to other plan subscribers. A mailing including 'Explanation of benefits statements (EOB)' was sent to plan...
CVS Pharmacy Lawsuit Over HIPAA Breach Survives Dismissal Motion
Pharmacy benefit manager CVS Pharmacy is suing mail service provider Press America, Inc in relation to over an accidental disclosure of 41 peoples' protected health information. CVS Pharmacy is under contract to provide a mail-order based pharmacy service for a health...
Data Violations to be Publicly Listed Online in Massachusetts
Massachusetts Attorney General Maura Healey has revealed the introduction launch of a new Internet-based data breach reporting application. The focus is to allow for breached organizations to file breach notifications to the Attorney General’s office as simply as...
Phishing Attack on Business Associate Exposes Forrest General Hospital Patients’ PHI
A business associate of Forrest Health’s Forrest General Hospital, HORNE LLP is alerting a number of hospital patients that some of their PHI (PHI) has potentially been stolen by a third party after they accessed the email account of one of its staff members. HORNE,...
PHI of 660 Patients Exposed Due to Missing Device
660 patients of Eastern Maine Medical Center are being notified that some of their protected health information may have been been exposed after a ortable hard drive, that stored sensitive information, has gone missing from its State Street facility, in Bangor, ME....
QNet Must Now be Used by Eligible Hospitals for Meaningful Use Attestation
A reminder was recently issued by the Centers for Medicare & Medicaid Services (CMS) that eligible hospitals and Critical Access Hospitals (CAHs) using the Electronic Health Record Incentive Schemes must employ the QualityNet Secure Portal (QNet) to submit...
Ransomware Attack Leads Class Action Lawsuit against Allscripts
A ransomware attack, discovered last week, against the EHR vendor Allscripts lead to thousands of healthcare suppliers being prevented from accessing patient data or using the e-prescription service. Florida-based Surfside Non-Surgical Orthopedics have moved quickly...
5,200 PHI Records Exposed in DC Assisted Living Facility Malware Attack
Westminster Ingleside King Farm Presbyterian Retirement Communities has experienced a malware infection that may have resulted in the attackers obtainingt he protected health information of may of it patients. The assisted living facility, based in Washington D.C.,...
South Dakota Senate Attorney Judiciary Committee Advances Data Breach Notification Bill
The South Dakota Senate Attorney Judiciary Committee has passed a bill to introduce data breach notification legislation after a 7-0 vote. The bill was proposed by the Committee on Judiciary following a request issued by the Attorney General Marty Jackley. At present...
PHI of 53,000 Pharmacy Patients Exposed in Email Hack
The protected health information of 53,173 patients who received services from Onco360 and CareMed Specialty Pharmacy has been compromised in an email hacking attack. The patients were notified after a security breach when suspicious activity involving an employee’s...
Victims of Ransomware Attacks Susceptible to Further Attacks
A new report released by online security company Sophos indicates that victims of ransomware attacks have a greater chance of suffering additional attacks within the subsequent 12 months. The report states that the healthcare sector is at the highest risk of...
Raise the level of HIPAA Awareness in your organization with Learner-Friendly, Comprehensive and Affordable HIPAA Training.
COMPREHENSIVE HIPAA TRAINING
Used in 1000+ Healthcare Organizations and 100+ Universities
Privacy is key to everything that we do at J Flowers Health Institute. We require the highest data privacy standards in our daily operations between our team members and patients. The HIPAA compliance and cyber security training we provide to our teams with ComplianceJunction creates enormous value for our organization.
Kevin DeLoach
Chief Operating Officer
J. Flowers Health Institute






























