article thumbnail

CommonSpirit Health Issues Update Confirming 164 Facilities Affected by Ransomware Attack

HIPAA Journal

CommonSpirit Health has issued an update about its October 2022 ransomware attack and has confirmed that patients from 164 facilities were affected by the attack and had their sensitive data exposed or stolen. Given the number of hospitals now known to have been affected, that total is likely to increase by a substantial amount.

article thumbnail

Bonus Features – August 6, 2023 – 83% of hospitals are collecting SDoH data, 46% of hospitals planning to use large language models in the call center, and more

Healthcare IT Today

News and Research Five in six (83%) of hospitals are collecting SDoH data , according to the latest ONC Data Brief, with 74% using structured, electronic screening tools. Another 60% of hospitals are receiving SDoH data from outside sources, primarily from HIE entities.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Peachtree Orthopedics Suffers Data Theft and Extortion Incident

HIPAA Journal

The group claims to have exfiltrated 194 gigabytes of data, including personal information and medical records and has threatened to publish the data if the ransom is not paid. Those files contained names, addresses, Social Security numbers, medical billing information, and financial account information.

article thumbnail

Health-ISAC Report Explores Current and Emerging Cyber Threats to the Healthcare Sector

HIPAA Journal

Ransomware and phishing continue to be the biggest cybersecurity concerns for healthcare organizations according to the February 2023 Current and Emerging Healthcare Cyber Threat Landscape report from Health-ISAC. Ransomware was the biggest concern for 2022 and 2023 with phishing and spear phishing in second.

article thumbnail

Community Health Systems to Notify Up to 1 Million Individuals About GoAnywhere Data Breach

HIPAA Journal

The Clop ransomware gang claimed responsibility for the attack and claimed to have exfiltrated data from around 130 users of the software. As per the group’s modus operandi, ransom demands were issued along with threats to publish the stolen data; however, somewhat atypically, ransomware was not used to encrypt files.

article thumbnail

OCR Will Focus on You if You Don’t Focus on Cybersecurity

Health Law RX

On October 31, 2023, OCR issued its first settlement agreement under the HIPAA Rules related to a ransomware attack (the Ransomware Settlement ) and on December 7, 2023, its first settlement under the HIPAA Rules arising from a phishing cyber-attack (the Phishing Settlement ).

HIPAA 52
article thumbnail

Health Provider News

Hall Render

to Study Treatments for Vascular Abnormalities Federal Appeals Court Hears Arguments on Nation’s First Ban on Gender-affirming Care for Minors Jason Demke Hired as COO at Mercy Hospital Fort Smit Pulaski Tech Awarded $5.7M