A hacker has potentially gained access to the medical records of up to 24,000 patients of Decatur County General Hospital in Tennessee. Teh Helath centre has discovered malware has been placed on a server storing its internal electronic medical record system. A...
Breach of PHI at Partners HealthCare Affects 2,600 Patients
The protected health information of approximately 2,600 patients of Partners HealthCare System has been sent notifications that their PHI may have been compromised is a HIPAA breach. Even though health care organizations covered by HIPAA are given 60 days following...
Western Washington Medical has PHI of 842 Patients Exposed
Western Washington Medical experienced a PHI breach when the protected health information of 842 patients of Group was exposed in November 2017 after files including sensitive health information were disposed, in error, with normal rubbish. On November 13, 2017, the...
2,600 Patients of Partners HealthCare Notified of May 2017 Breach
Partners HealthCare System is making contact with around 2,600 patients to advise them that, potentially, some of their protected health information (PHI) may have been accessed. Even though HIPAA covered bodies have up to 60 days after the identification of a breach...
CarePlus Notifies 11,200 Health Plan Members of PHI Breach
Florida-based CarePlus Health Plans has experienced a PHI breach incident which has seen certain plan members’ protected health information disclosed, in error, to other plan subscribers. A mailing including 'Explanation of benefits statements (EOB)' was sent to plan...
CVS Pharmacy Lawsuit Over HIPAA Breach Survives Dismissal Motion
Pharmacy benefit manager CVS Pharmacy is suing mail service provider Press America, Inc in relation to over an accidental disclosure of 41 peoples' protected health information. CVS Pharmacy is under contract to provide a mail-order based pharmacy service for a health...
Data Violations to be Publicly Listed Online in Massachusetts
Massachusetts Attorney General Maura Healey has revealed the introduction launch of a new Internet-based data breach reporting application. The focus is to allow for breached organizations to file breach notifications to the Attorney General’s office as simply as...
Phishing Attack on Business Associate Exposes Forrest General Hospital Patients’ PHI
A business associate of Forrest Health’s Forrest General Hospital, HORNE LLP is alerting a number of hospital patients that some of their PHI (PHI) has potentially been stolen by a third party after they accessed the email account of one of its staff members. HORNE,...
PHI of 660 Patients Exposed Due to Missing Device
660 patients of Eastern Maine Medical Center are being notified that some of their protected health information may have been been exposed after a ortable hard drive, that stored sensitive information, has gone missing from its State Street facility, in Bangor, ME....
QNet Must Now be Used by Eligible Hospitals for Meaningful Use Attestation
A reminder was recently issued by the Centers for Medicare & Medicaid Services (CMS) that eligible hospitals and Critical Access Hospitals (CAHs) using the Electronic Health Record Incentive Schemes must employ the QualityNet Secure Portal (QNet) to submit...
Ransomware Attack Leads Class Action Lawsuit against Allscripts
A ransomware attack, discovered last week, against the EHR vendor Allscripts lead to thousands of healthcare suppliers being prevented from accessing patient data or using the e-prescription service. Florida-based Surfside Non-Surgical Orthopedics have moved quickly...
5,200 PHI Records Exposed in DC Assisted Living Facility Malware Attack
Westminster Ingleside King Farm Presbyterian Retirement Communities has experienced a malware infection that may have resulted in the attackers obtainingt he protected health information of may of it patients. The assisted living facility, based in Washington D.C.,...
South Dakota Senate Attorney Judiciary Committee Advances Data Breach Notification Bill
The South Dakota Senate Attorney Judiciary Committee has passed a bill to introduce data breach notification legislation after a 7-0 vote. The bill was proposed by the Committee on Judiciary following a request issued by the Attorney General Marty Jackley. At present...
PHI of 53,000 Pharmacy Patients Exposed in Email Hack
The protected health information of 53,173 patients who received services from Onco360 and CareMed Specialty Pharmacy has been compromised in an email hacking attack. The patients were notified after a security breach when suspicious activity involving an employee’s...
Victims of Ransomware Attacks Susceptible to Further Attacks
A new report released by online security company Sophos indicates that victims of ransomware attacks have a greater chance of suffering additional attacks within the subsequent 12 months. The report states that the healthcare sector is at the highest risk of...
1,300 Patients’ Medical Records Viewed Without Authorization by Palomar Health Nurse
Over 1,300 clients of Palomar Medical Center Escondido have been wanred that a nurse, previously employed by the group, accessed their medical records without permission while they were being treated at the health center. The privacy breaches happened over a 15-month...
Class Action Lawsuit by Victims of Aetna HIV Violation Settled
Health insurer Aetna has agreed to a settlement in a class action lawsuit taken by victims of a mailing mistaken that lead to the details of HIV medications prescribed to individuals being seen through the clear plastic windows of the envelopes they were sent in. The...
University of Phoenix Survey Shows Just 20% of RNs Encountered PHI Breaches
A recent University of Phoenix College of Health Professions survey shows that indicates registered nurses (RNs) are satisfied withtheir organization’s measures in place to stop data breaches occurring. The survey was conducted on 504 full time RNs and administrative...
Laptop Theft Impacts 43,000 Patients of Coplin Health Systems
43,000 patients of West Virginia-based Coplin Health Systems have been advised that their PHI has possibly been exposed due to the theft of an unencrypted laptop computer from the vehicle of a member of staff. Coplin Health was made aware to the theft of the laptop on...
9387 Patients’ PHI Exposed Due to Lack of Encryption on Hard Drive
Charles River Medical Associates, based in Framingham, MA-based, has discovered that one of its portable hard drives was missing, possibly affecting the PHI of almost 9,400 people Last November, the practice discovered that the device which contained x-ray images,...
Patients of Oklahoma State University Center for Health Sciences Informed of PHI Breach
It has been discovered that an unauthorized person has gained access to parts of its Oklahoma State University Center for Health Sciences (OSUCHS) computer network and potentially downloaded files holding billing information of Medicaid subscribers. The security...
30,000 Medicaid Recipients Affected by Phishing Attack on Florida Agency for Health Care Administration
The Agency for Health Care Administration in Florida has found that an unauthorized individual obtained access to a single email account due to a member of staff beign tricked by phishing scam. The member of staff received and responded to the malicious phishing email...
1,128 Patients Impacted by Compassion Care Hospice Breach
1,128 patients’ protected health information has potentially been viewed after an unauthorized individual gained access to the Compassionate Care Hospice Las Vegas (CCHLV) network and server. The breach occurred on October 28, 2017, CCHLV was alerted that its network...
Data Security Inadequacies at North Carolina State Medicaid Agency by OIG
The findings of an audit of the North Carolina State Medicaid agency by The Department of Health and Human Services’ Office of Inspector General (OIG) have been published in a new report. The report indicates that the State agency has failed to put in place sufficient...
Two Dara Security Incidents Reported at Kaiser Permanente Reports
Kaiser Permanente has suffered a couple of security incidents which filed with the Department of Health and Human Services’ Office for Civil Rights (OCR). Overall, in excess of 5,000 people have been affected by the data violations. The HIPAA breaches impact clients...
SSM Health Patients Notified of Data Breach Involving Member of Staff
It has been discovered that a former member of staff at SSM Health has been accessing the health records of patients without any valid work reason for doing so for roughly eight months. The former health worker was employed in the St. Louis, MO-based not-for-profit...
Emory Healthcare Data Breach Impacts 24,000 Patients
A former employee of Emory Healthcare (EHC) has been found to have obtained the protected health information of 24,000 EHC patients and shared the data to a Microsoft Office 365 OneDrive account, from where it could possibly be downloaded by other people. The former...
Longs Peak Family Practice Suffers Two Cyberattacks in One Week
Longs Peak Family Practice (LPFP) in Colorado has found that an individual gained access to its systems and encrypted files using ransomware last November. The family and sports medicine practice based in Longmont CO, found suspicious activity on its network on...
Ongoing Cyberattack Uncovered at Jones Memorial Hospital
A cyberattack, causing unexpected downtime, has been discovered at The University of Rochester Medicine’s Jones Memorial Hospital in Wellsville, NY. The attack is thought to have started on Wednesday December 27 and has lead to disruption to some of its information...
Colorado Mental Health Institute Hit by Phishing Attack
The Colorado Mental Health Institute at Pueblo has found that one of its staff members has been tricked by a phishing scam that possibly allowed the attacker to gain access to the protected health information of around 650 patients. A 449-bed hospital providing...
Raise the level of HIPAA Awareness in your organization with Learner-Friendly, Comprehensive and Affordable HIPAA Training.
COMPREHENSIVE HIPAA TRAINING
Used in 1000+ Healthcare Organizations and 100+ Universities

Privacy is key to everything that we do at J Flowers Health Institute. We require the highest data privacy standards in our daily operations between our team members and patients. The HIPAA compliance and cyber security training we provide to our teams with ComplianceJunction creates enormous value for our organization.
Kevin DeLoach
Chief Operating Officer
J. Flowers Health Institute