article thumbnail

Lawsuit Seeking Property Insurance Cover for Ransomware Attack Fails

HIPAA Journal

Cyber insurance policies can help to cover the cost of losses from ransomware attacks, but these policies are becoming more difficult to obtain. The decision ends a 3-year court battle between the medical billing software developer, EMOI, and its insurer, Owners Insurance Company.

article thumbnail

CommonSpirit Health Issues Update Confirming 164 Facilities Affected by Ransomware Attack

HIPAA Journal

CommonSpirit Health has issued an update about its October 2022 ransomware attack and has confirmed that patients from 164 facilities were affected by the attack and had their sensitive data exposed or stolen. In February 2023, CommonSpirit Health issued a further update confirming the attackers also obtained the data of patients of St.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Health-ISAC Report Explores Current and Emerging Cyber Threats to the Healthcare Sector

HIPAA Journal

Ransomware and phishing continue to be the biggest cybersecurity concerns for healthcare organizations according to the February 2023 Current and Emerging Healthcare Cyber Threat Landscape report from Health-ISAC. Ransomware was the biggest concern for 2022 and 2023 with phishing and spear phishing in second.

article thumbnail

Community Health Systems to Notify Up to 1 Million Individuals About GoAnywhere Data Breach

HIPAA Journal

The Clop ransomware gang claimed responsibility for the attack and claimed to have exfiltrated data from around 130 users of the software. As per the group’s modus operandi, ransom demands were issued along with threats to publish the stolen data; however, somewhat atypically, ransomware was not used to encrypt files.

article thumbnail

Lake Charles Memorial Health System Cyberattack Affects Almost 270,000 Patients

HIPAA Journal

Southwest Louisiana Health Care System did not disclose the exact nature of the cyberattack, but the Hive ransomware gang claimed responsibility. While Hive is known for using ransomware to encrypt files, the gang claims only to have exfiltrated patient data. Ransomware Attack Affects 6,800 Patients of Midwest Orthopaedic Consultants.

article thumbnail

Peachtree Orthopedics Suffers Data Theft and Extortion Incident

HIPAA Journal

Those files contained names, addresses, Social Security numbers, medical billing information, and financial account information. Alvaria confirmed in February that it was the victim of a Hive ransomware attack in November 2022. The delay in issuing notifications was due to the time taken to review all affected files.

article thumbnail

OCR Will Focus on You if You Don’t Focus on Cybersecurity

Health Law RX

On October 31, 2023, OCR issued its first settlement agreement under the HIPAA Rules related to a ransomware attack (the Ransomware Settlement ) and on December 7, 2023, its first settlement under the HIPAA Rules arising from a phishing cyber-attack (the Phishing Settlement ).

HIPAA 52