calHIPAA

Promoting HIPAA Compliance For Over 20 Years

  • HIPAA News
  • HIPAA Advice
  • HIPAA Compliance
    • HIPAA Law
  • HIPAA Violations
    • HIPAA Penalties
    • Social Media HIPAA Violation Examples
  • HIPAA Training
  • About calHIPAA
Home2020December

Month: December 2020

CISA Publishes New Website About the SolarWinds Supply Chain Compromise and Free Tool to Identify Malicious Activity

December 30, 2020 Christine Garcia

The DHS’ Cybersecurity and infrastructure Security Agency has created a website offering information about the current cyber activities of the advanced persistent threat (APT) gang behind the compromise of the SolarWinds Orion software supply chain. […]

Healthcare Data Breach Report for November 2020

December 28, 2020 Christine Garcia

The number of healthcare data breaches reported dropped again last November; however, take note that the number of reported breaches in October 2020 was thrice the average monthly number mostly because of the ransomware attack […]

Email Account Breach Reports by Meharry Medical College and MEDNAX Services

December 25, 2020 Christine Garcia

Meharry Medical College located in Nashville, TN found an email account breach that possibly allowed unauthorized persons to get access or steal the protected health information (PHI) of up to 20,983 patients. Meharry Medical College […]

OCR HIPAA Audits Industry Report Pinpoints Typical Areas of Noncompliance with the HIPAA Guidelines

December 24, 2020 Christine Garcia

The Department of Health and Human Services’ Office for Civil Rights has publicized its 2016-2017 HIPAA Audits Industry Report, featuring areas where HIPAA-covered entities and their business associates are complying or unable to abide with […]

NIST Publishes Final Guidance on Protecting the Picture Archiving and Communication System (PACS) Ecosystem

December 22, 2020 Christine Garcia

The National Cybersecurity Center of Excellence (NCCoE) at the National Institute of Standards and Technology (NIST) has issued final guidance for healthcare delivery companies on securing the Picture Archiving and Communication System (PACS) ecosystem. PACS […]

FBI Alert on DoppelPaymer Ransomware Attacks Directed at Critical Infrastructure

December 21, 2020 Christine Garcia

The Federal Bureau of Investigation (FBI) has released a private industry notice regarding the increasing DoppelPaymer ransomware activity and the threat actors’ change in strategy to compel victims into paying the ransom. DoppelPaymer ransomware first […]

Data Breaches at Cedar Springs Hospital, Travis County Health District And Konikoff Dental Associates

December 19, 2020 Christine Garcia

Cedar Springs Hospital based in Colorado Springs, CO is informing some patients regarding the loss of a portable storage unit that had their protected health information (PHI) last October 2020. The hospital gave a copy […]

Twitter Penalized $544,000 for its GDPR Data Breach Violations

December 17, 2020 Christine Garcia

Twitter is penalized with €450,000 ($544,600) for violating the EU’s General Data Protection Regulation (GDPR). The Data Protection Commission (DPC) in Ireland issued the fine in connection with Twitter’s privacy breach report to the DPC […]

House Approves Bill that Acknowledges Adoption of Cybersecurity Best Practices In Making Regulatory Decisions

December 16, 2020 Christine Garcia

The House Energy and Commerce Committee passed a new bill (HR 7988), which tries to change the HITECH Act to necessitate the Department of Health and Human Services to identify whether or not HIPAA-covered entities […]

Breaches at Tufts Health Plans, Liv-On Family Care Center, Tennessee Proton Radiation Therapy Centers, and Presbyterian Health Plan

December 15, 2020 Christine Garcia

A phishing attack on Tufts Health Plan resulted in the compromise of the protected health information (PHI) of 60,545 members’ of EyeMed, a vision benefits management company. EyeMed uncovered the phishing attack on July 1, […]

Ransomware Attacks at GBMC HealthCare, Allegheny Health Network, AMITA Health, Bayhealth and University of Vermont Medical Center

December 11, 2020 Christine Garcia

GBMC HealthCare located in Towson, MD reported a ransomware attack that happened on December 6, 2020 causing the taking down of its computer network. The healthcare company currently implements EHR downtime protocols while it controls […]

Data Breaches at Dental Care Alliance, Legacy Community Health Services and Hillcrest Nursing Center

December 10, 2020 Christine Garcia

Dental Care Alliance, LLC based in Sarasota, FL, a dental support provider with more than 320 affiliated dental practices in 20 states, was hacked and potentially compromising the protected health information (PHI) of over a […]

Information on COVID-19 Vaccine Distribution for Public Health Agencies

December 9, 2020 Christine Garcia

Rave Mobile Safety has announced a COVID-19 Vaccine Distribution Option that will enable public health agencies to determine persons who must have priority vaccination, customize alerts to these individuals, provide reminders for second vaccinations, and […]

Montefiore Medical Center and Mercy Health Reported Insider Data Breaches

December 8, 2020 Christine Garcia

Montefiore Medical Center and Mercy Health have reported insider data breaches in the past few days. In both breaches, an employee accessed patient information even if there was no valid work reason for doing so. […]

Kalispell Regional Healthcare Proposes to Pay 4.2 Million to Resolve Data Breach Lawsuit

December 7, 2020 Christine Garcia

Kalispell Regional Healthcare based in Montana has offered a $4.2 million settlement deal to take care of a lawsuit filed on behalf of victims associated with a data breach that was reported in October 2019. […]

Researchers Talk About Potential Synthetic DNA Supply Chain Attack

December 4, 2020 Christine Garcia

Researchers at Ben-Gurion University in Israel talked about a potential bioterrorist attack that could jeopardize the synthetic DNA supply chain. DNA synthesis providers may be misled into creating unsafe DNA sequences, skipping present security controls, […]

Four Vulnerabilities Discovered in OpenClinic Application

December 3, 2020 Christine Garcia

Four vulnerabilities were identified in the OpenClinic software, the most critical of which could possibly permit unauthorized people to get around authentication and access protected health information (PHI). A lot of private clinics, hospitals, and […]

University of Minnesota Physicians and McLeod Health Report Email Account Breaches

December 2, 2020 Christine Garcia

University of Minnesota Physicians recently experienced a phishing attack that permitted unauthorized people to obtain access to two workers’ email accounts. One email account was accessible from January 30 to January 31, 2020 and the […]

Cyberattack on AspenPointe Impacts More Than 295K Patients

December 1, 2020 Christine Garcia

AspenPointe based in Colorado Springs, a provider of mental health and behavioral health services, has reported a cyberattack in September 2020 that resulted in the potential compromise of patient information. Because of the attack, the […]

  • Site Map
  • About calHIPAA
  • Privacy Policy
  • Editorial Policy
  • Terms & Conditions
  • Cookie Policy
  • Diversity & Inclusion Policy
  • Jobs at calHIPAA

CalHIPAA is a registered trademark. © Copyright 2003 to 2024 calHIPAA. All rights reserved.