HIPAA News
Apria Healthcare Settles Data Breach Lawsuits by Paying $6.4M

Apria Healthcare Settles Data Breach Lawsuits by Paying $6.4M

Home healthcare equipment and related services provider, Apria Healthcare based in Indianapolis decided to pay $6,400,000 to settle all claims filed by the 1,869,598 individuals affected by data breaches in 2019 and 2021. In April 2019, hackers accessed areas of its...

UNITE HERE Pays $6 Million to Resolve Data Breach Lawsuit

UNITE HERE Pays $6 Million to Resolve Data Breach Lawsuit

Labor Union, UNITE HERE, based in New York has consented to paying $6 million to settle a combined class action lawsuit that claimed the group's inability to carry out proper cybersecurity measures to safeguard the sensitive information it kept. On October 20, 2023,...

Feds Issues Advisory Against Ghost Ransomware Group

Feds Issues Advisory Against Ghost Ransomware Group

U.S. authorities have published an alert concerning the Ghost ransomware group based in China, which has executed ransomware attacks in about 70 countries on several industries such as healthcare, religious institutions, education, manufacturing, technology, and...

Due Date of 2024 Data Breach Reports Submission to OCR

Due Date of 2024 Data Breach Reports Submission to OCR

March 1, 2025, is the last day for filing reports involving 2024 data breaches impacting less than 500 people to the HHS’ Office for Civil Rights (OCR). When breach reports are not filed on time, HIPAA-covered entities are considered non-compliant with the HIPAA...

The Status of Healthcare Ransomware Attacks in 2024

The Status of Healthcare Ransomware Attacks in 2024

Comparitech recently publicized a report that showed how much work ransomware groups have been doing. The groups attack networks, encrypt files, and then compel the victims to pay ransom. Comparitech’s analysts found 5,461 ransomware attacks successfully executed in...

Elgon Information Systems Settles Risk Analysis Failure for $80K

Elgon Information Systems Settles Risk Analysis Failure for $80K

The HHS’ Office for Civil Rights (OCR) has reported its first HIPAA enforcement for 2025 to settle alleged HIPAA Rules violations. Electronic medical records and billing support services provider, Elgon Information Systems based in Massachusetts, paid an $80,000...

New Bipartisan Senate Bill to Increase Healthcare Cybersecurity

New Bipartisan Senate Bill to Increase Healthcare Cybersecurity

A bipartisan bill presented in the Senate requires the Department of Health and Services (HHS) to revise the HIPAA rules to boost cybersecurity throughout the healthcare industry and offer funds to support healthcare organizations with low resources to follow...

Warning Issued For Midnight Blizzard’s Spear Phishing Campaign

Microsoft tracked a foreign threat actor called Midnight Blizzard (also known as APT29, Cozy Bear). It is performing a spear phishing campaign attacking companies in several sectors, such as academia, government, defense, information technology, non-governmental...

Gryphon Healthcare Sends Breach Notification to 400,000 Patients

Gryphon Healthcare has reported a security incident wherein the files of approximately 400,000 people with protected health information (PHI) had been accessed by unauthorized individuals. Gryphon Healthcare based in Houston, TX is a revenue cycle, coding, HIPAA...

Omni Family Health Confirmed Data Breach Due to Cyberattack

Omni Family Health, a healthcare provider with centers across Kings, Kern, Fresno, and Tulare counties in California, has informed patients and staff about the potential theft of their protected health information (PHI) in a recent cyberattack. The organization...

Privacy Lawsuit Against IU Health Voluntarily Dismissed

The lawsuit against IU Health and IU Health Associates filed by Attorney General Todd Rokita of Indiana related to violations of the Indiana Deceptive Consumer Sales Act and the Health Insurance Portability and Accountability Act (HIPAA) has been dismissed. The case...

Raise the level of HIPAA Awareness in your organization with Learner-Friendly, Comprehensive and Affordable HIPAA Training.

COMPREHENSIVE HIPAA TRAINING

Please enable JavaScript in your browser to complete this form.

Privacy is key to everything that we do at J Flowers Health Institute. We require the highest data privacy standards in our daily operations between our team members and patients. The HIPAA compliance and cyber security training we provide to our teams with ComplianceJunction creates enormous value for our organization.

Kevin DeLoach

Chief Operating Officer
J. Flowers Health Institute