calHIPAA

Promoting HIPAA Compliance For Over 20 Years

  • HIPAA News
  • HIPAA Advice
  • HIPAA Compliance
    • HIPAA Law
  • HIPAA Violations
    • HIPAA Penalties
    • Social Media HIPAA Violation Examples
  • HIPAA Training
  • About calHIPAA
Home2021April

Month: April 2021

Class Action Lawsuit Filed Against Einstein Healthcare Network Over 2020 Phishing Attack

April 30, 2021 Christine Garcia

Einstein Healthcare Network, a health system based in Philadelphia, is dealing with a class-action lawsuit associated with an August 2020 phishing attack that enabled an unauthorized person to access several employee email accounts. Einstein Healthcare […]

Wyoming Department of Health Reports GitHub Data Breach Affecting 164,000 People

April 29, 2021 Christine Garcia

The Wyoming Department of Health (WDH) has found out that the protected health information (PHI) of 164,021 people were accidentally exposed on the internet because of a mistake made by a member of its employees. […]

PHI Compromised Due to Cyberattacks on HME Specialists and Sapphire Community Health

April 28, 2021 Christine Garcia

An email security breach at HME Specialists LLC, doing business as Home Medical Equipment Holdco, resulted in the potential compromise of the protected health information (PHI) of 153,013 people. HME Specialists found suspicious activity within […]

DOJ Introduces Ransomware and Digital Extortion Task Force

April 27, 2021 Christine Garcia

Due to the escalating danger from ransomware attacks, the U.S Department of Justice has started a brand new Ransomware and Digital Extortion Task Force that is going to focus on the whole ransomware ecosystem. The […]

Healthcare Data Breach Summary Report for March 2021

April 23, 2021 Christine Garcia

The healthcare data breaches reported in March increased by 38.8%. There were 62 breaches involving at least 500 records reported to the HHS’ Office for Civil Rights, the majority of which were hacking incidents. The […]

PHI of Around 200,000 Washington D.C. Health Plan Members Stolen by Hackers

April 22, 2021 Christine Garcia

A cyberattack on CareFirst BlueCross BlueShield Community Health Plan District of Columbia (CHPDC) resulted in the theft of CHPDC members’ protected health information (PHI). CHPDC, formerly called Trusted Health Plans, found out that its computer […]

NSA/CISA/FBI: Patch Today to Prevent Russian Government Hackers From Exploiting These 5 Vulnerabilities

April 21, 2021 Christine Garcia

Pressure between Russia and the U.S. is increasing because of the nonstop cyberattacks on private and public sector establishments as well as the U.S. government by Russian government hackers. The National Security Agency (NSA), DHS’ […]

Health-ISAC Assists Healthcare Companies to Get Ready for Supply Chain Cyberattacks

April 20, 2021 Christine Garcia

Health-ISAC, together with the American Hospital Association (AHA), has shared guidance for healthcare data security teams to assist them to develop resilience in the event of supply chain cyberattacks like the latest SolarWinds Orion occurrence. […]

4 New Critical Microsoft Exchange Server Vulnerabilities Need Immediate Patching

April 15, 2021 Christine Garcia

The U.S. National Security Agency (NSA) has reported four zero-day vulnerabilities identified in Microsoft Exchange Server versions 2013, 2016, and 2019 which are employed for on-premises Microsoft Exchange Servers. Quick patching is necessary as threat […]

Adventist Health Physicians Network to Pay $40,000 for Privacy Breach

April 14, 2021 Christine Garcia

The Ventura County District Attorney directed Adventist Health Physicians Network located in Simi Valley, California to pay civil momentary penalties worth $40,000 for a civil privacy settlement resolving a patient privacy breach that impacted 3,797 […]

CISA Launches Tool for Finding Post BreachBreach Activity in Microsoft 365 Environments

April 12, 2021 Christine Garcia

The DHS Cybersecurity and Infrastructure Security Agency (CISA) has introduced a brand new tool to go with the open-source Sparrow detection tool based on PowerShell that was launched in December 2020 to support network defenders […]

Class Action Lawsuit Filed Against Roper St. Francis Healthcare Over Data Breach

April 8, 2021 Christine Garcia

Roper St Francis Healthcare is confronted with a class action lawsuit associated with an October 2020 data breach wherein patient information was purportedly stolen. The lawsuit alleges negligence for not protecting patients’ private information. From […]

FBI/CISA Alert on Continuing Attacks On Vulnerable Fortinet FortiOS Servers

April 7, 2021 Christine Garcia

Advanced persistent threat (APT) actors are exploiting vulnerabilities in the Fortinet FortiOS operating system to gain access to servers to get into networks as pre-positioning for follow-on data exfiltration and information encryption attacks. In the […]

PHI from Several Covered Entities Posted on GitHub

April 6, 2021 Christine Garcia

Med-Data Inc., a revenue cycle management services vendor based in Spring, TX, has given confirmation that the protected health information (PHI) of patients of some of its clients were loaded to GitHub, an open-source software […]

Third-Party Data Breaches Impact Lexington Medical Center and CalViva Health

April 2, 2021 Christine Garcia

Wake Forest Baptist Health made an announcement that an unauthorized individual acquired access to the systems of Healthgrades Operating Co. Inc, its technology vendor between October 16 and October 28, 2020 and possibly viewed or […]

Iranian APT Group Linked to Spear Phishing Campaign Targeting Senior Staffers at Medical Research Firms

April 1, 2021 Christine Garcia

Security company Proofpoint has associated the Advanced Persistent Threat (APT) group called Charming Kitten with a spear-phishing campaign carried out at the end of 2020 aimed towards senior pros at medical research institutions in the […]

New Report Reveals COVID-19 Themed Phishing Tactics

April 1, 2021 Christine Garcia

At the beginning of 2020, phishers began taking advantage of the pandemic and changed from their typical lures to many pandemic-associated themes for their campaigns. After one year since the COVID pandemic began, researchers at […]

  • Site Map
  • About calHIPAA
  • Privacy Policy
  • Editorial Policy
  • Terms & Conditions
  • Cookie Policy
  • Diversity & Inclusion Policy
  • Jobs at calHIPAA

CalHIPAA is a registered trademark. © Copyright 2003 to 2024 calHIPAA. All rights reserved.