PrivacySignal
Healthcare

AdaptHealth Reports Material Cybersecurity Incident and Theft of Patient Data

HIPAA Journal · · US Federal · Healthcare Privacy

AdaptHealth, a publicly traded home medical equipment and supplies company, has disclosed a cybersecurity incident it has classified as material, involving the theft of patient data. The breach affects customers who rely on the company for home health products including diabetes supplies and sleep therapy equipment.

Why this matters: People who use home medical equipment are not a random cross-section of the population. They are managing chronic conditions, disabilities, or serious health needs. That data is more sensitive than most, and they had no real choice about sharing it. AdaptHealth is publicly traded, which means the 'material' label carries legal weight — the company is saying this breach is significant enough to affect investors. The harder question is what it means for patients, and what happens to their information now that it is gone.

Who should care: Healthcare professionals · Privacy officers · Compliance

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

Related stories

Healthcare
HIPAA Journal · · US Federal

Data Theft/Extortion Incident Confirmed by Beverly Hills Plastic Surgeon

Data breaches have recently been announced by Terry J. Dubrow, MD, SunCloud Health, Integer Precision Technologies, Minnesota ENT, and Nipro […] The post Data Theft/Extortion Incident Confirmed by Beverly Hills Plastic Surgeon appeared first on The HIPAA Journal.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Healthcare
HIPAA Journal · · US Federal

Vishing Attack Provides Threat Act with Access to Quantum Health Network

Quantum Health, a healthcare navigation and care coordination company, disclosed a data breach after a vishing attack — a voice-based social engineering scheme — gave threat actors unauthorized access to its network. Heart of America Medical Center was also named in connection with recent breach announcements.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Healthcare
HIPAA Journal · · US Federal

Data Breaches Announced by Five HIPAA-Regulated Entities

Five healthcare organizations covered under HIPAA have disclosed data breaches, including the Women's Center for Radiology in Florida and Optalis Management Solutions in Michigan, along with three other named entities. The announcements follow standard breach notification requirements under federal health privacy law.

Who should care: Healthcare professionals · Privacy officers · Compliance · Lawyers

#healthcare#regulation Read original →
Healthcare
Nextgov/FCW · · US Federal

VA seeks to extend its Oracle health record contract through 2031

The Department of Veterans Affairs is seeking to extend its electronic health records contract with Oracle through 2031, citing the need to continue deployment across VA medical centers until all facilities have fully transitioned to the new system.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Healthcare
DataBreaches.net · · International

CA: Snoopers Beware; NL’s Privacy Commissioner Recommends Naming Individuals in Snooping-Related Breaches

Newfoundland and Labrador's Privacy Commissioner is recommending that public bodies disclose the names of employees responsible for snooping-related privacy breaches to the people whose records were accessed. The recommendation follows an incident in which an NL Health Services employee viewed a patient's health record without authorization.

Who should care: Healthcare professionals · Privacy officers · Compliance · General readers · Policy

#healthcare#privacy Read original →
Healthcare
HIPAA Journal · · US Federal

Critical Vulnerabilities Identified in Popular Consumer Fertility Device

Security researchers have identified critical vulnerabilities in the Mira Hormone Monitor, a consumer fertility tracking device. The findings were reported by The HIPAA Journal, suggesting the flaws carry potential health data privacy implications.

Who should care: Healthcare professionals · Privacy officers · Compliance · Cybersecurity

#healthcare#surveillance#security Read original →