Mental Health Center Fined $100K for Delayed Patient Records Access
Today, the US Department of Health and Human Services (HHS), Office for Civil Rights (OCR), announced a $100,000 civil monetary penalty against Rio Hondo Community Mental Health Center (“Rio Hondo”)…
Read More »Oklahoma Regional Medical Center: 133K Patients Affected by Ransomware Attack
Great Plains Regional Medical Center in Elk City, Oklahoma, fell victim to a ransomware attack detected on September 8, 2024, when files were encrypted.
Read More »Healthcare Worker Sentenced to 2 Years for Accessing Ginsburg’s Medical Records
A former healthcare worker who illegally accessed the health records of Supreme Court Justice Ruth Bader Ginsburg before she died was sentenced Thursday to two years in prison.
Read More »Ransomware Attack Hits Small Rural Georgia Hospital and Nursing Home
A small community hospital and its nursing home in rural Georgia have resorted to paper charts and other manual process for patient care as they deal with a ransomware attack…
Read More »Office for Civil Rights Announces the Release of the Security Risk Assessment (SRA) Tool
The US Department of Health and Human Services Office for Civil Rights (OCR) and the Assistant Secretary for Technology Policy (ASTP) announced the release of version 3.5 of the Security…
Read More »HHS OCR Settles HIPAA Ransomware Cybersecurity Investigation for $90,000
The US Department of Health and Human Services (HHS), Office for Civil Rights (OCR) announced a settlement with Bryan County Ambulance Authority (BCAA), a provider of emergency medical services in…
Read More »HHS OCR Settles Ransomware Cybersecurity Investigation for $500,000
Today, the US Department of Health and Human Services (HHS), Office for Civil Rights (OCR), announced a settlement with Plastic Surgery Associates of South Dakota in Sioux Falls, for several…
Read More »Social Engineering: Searching for Your Weakest Link
Cyber threats targeting individuals often take the form of social engineering, where attackers attempt to convince someone to engage in actions or reveal information that can put themselves and their…
Read More »Cyber Actors’ Brute Force and Credential Access Activity Compromises Critical Infrastructure Organizations
The Federal Bureau of Investigation (FBI), the Cybersecurity and Infrastructure Security Agency (CISA), the National Security Agency (NSA), the Communications Security Establishment Canada (CSE), the Australian Federal Police (AFP), and…
Read More »Rhysida Leaks Nursing Home Data, Demands $1.5M from Axis
Ransomware gang Rhysida is threatening to dump data on the dark web that belongs to a Colorado provider of mental health, substance abuse and other healthcare services unless it pays…
Read More »