PrivacySignal
Enforcement

Patients Sue Healthcare Corporations Over Data Breaches, Sharing of Personal Information

DataBreaches.net · · International · Enforcement

A wave of class action lawsuits filed in state and federal courts is targeting large healthcare corporations for allegedly exposing or sharing patients' personal and protected health information. One suit, filed in Davidson County Circuit Court, names CareNow as a defendant, brought by three anonymous plaintiffs.

Why this matters: Healthcare data is among the most sensitive information a company can hold. It covers diagnoses, treatments, mental health, and conditions people share only because they have to. When that data leaks or gets shared without consent, patients cannot undo it. These lawsuits are testing whether courts will make corporations pay real costs for that harm. Right now, the incentive structure rewards collecting data and punishes sloppy handling only when someone sues. More of these cases, and bigger verdicts, are probably the only thing that changes that math.

Who should care: Lawyers · Privacy officers · Compliance · Healthcare professionals · General readers · Policy

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

The Attacker Did Not Need to Sleep

Spain received its first reported personal-data breach carried out by an AI agent. The techniques were familiar. The speed and autonomy were not.

· 4 min read Read →

Related stories

Enforcement
The Guardian — Tech · · International

Privacy watchdog launches investigation into China-based company behind Kmart ‘pervert glasses’ app

Australia's privacy regulator has opened a formal investigation into Shenzhen Qingcheng, the China-based company behind the HeyCyan app embedded in Kmart's low-cost smartglasses, after the company failed to respond to the commissioner's inquiries. The probe follows public concern about the glasses being used to covertly capture images and video.

Who should care: Lawyers · Privacy officers · Compliance · General readers · Policy

#enforcement#regulation#privacy Read original →
Enforcement
A ANews · · International

US closes review of US airlines' data privacy without seeking penalties

U.S. regulators have closed a review of domestic airlines' data privacy practices without pursuing any penalties against the carriers. The outcome means airlines faced scrutiny but no formal consequences for how they handle passenger data.

Who should care: Lawyers · Privacy officers · Compliance · General readers · Policy

#enforcement#privacy Read original →
Enforcement
S SC Media · · International

Italy fines IQVIA $7.8 million for patient data privacy violations

Italy's data protection authority has fined IQVIA, a global health data and analytics company, approximately $7.8 million for violating patient privacy rules. The fine relates to how the company handled personal health data.

Who should care: Lawyers · Privacy officers · Compliance · Healthcare professionals · General readers · Policy

#enforcement#healthcare#privacy Read original →
Enforcement
R Reuters · · International

Catholic diocese sues US government seeking clergy access to detainees

A Catholic diocese has filed a lawsuit against the federal government, seeking to secure clergy access to immigration detainees. The suit challenges what the diocese says are barriers preventing religious ministers from reaching people held in detention facilities.

Who should care: Lawyers · Privacy officers · Compliance

#enforcement Read original →
Enforcement
BleepingComputer · · International

IQVIA fined $7.8 million for failing to properly anonymize health data

Italy's data protection authority fined IQVIA €7 million after finding that the company's anonymization practices were inadequate, leaving roughly one million patients at risk of being re-identified from their health data.

Who should care: Lawyers · Privacy officers · Compliance · Healthcare professionals · AI governance · General readers · Policy

#enforcement#healthcare#gdpr#privacy Read original →