PrivacySignal

Search & browse the archive

The full corpus — beyond today's front page.

Reset

151 results · page 2 of 7

Enforcement
EFF — Deeplinks · · International

New Records Reveal Problems with Medicare’s AI Prior Authorization Experiment

Roughly 1,000 pages of federal records released by the Electronic Frontier Foundation, obtained through litigation against CMS, reveal that Medicare's AI-driven prior authorization program, WISeR, has produced widespread delays and denials of medical care. The documents include contracts with tech companies, internal status reports, and complaints from healthcare providers about the program's performance.

Who should care: Lawyers · Privacy officers · Compliance · General readers · AI governance · Policy

#enforcement#ai Read original →
Breach
HIPAA Journal · · US Federal

NFI North Data Breach Affects Almost 50,000 Individuals

NFI North, a New Hampshire-based organization, disclosed a data breach affecting nearly 50,000 individuals. The breach was reported alongside separate incidents at Nephrology Associates in Kansas and PAMCAH-UA Local 675 Health, suggesting a broader pattern of healthcare and benefits-sector breaches.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
HIPAA Journal · · US Federal

June 2026 Healthcare Data Breach Report

The HIPAA Journal's June 2026 report recorded 66 large healthcare data breaches — each affecting 500 or more individuals — reported during the month. The figures reflect ongoing exposure of protected health information across the U.S. healthcare sector.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Healthcare
HIPAA Journal · · US Federal

Survey Reveals Patients Want to Know When and How AI is Used in Healthcare

A new survey found that patients want transparency about when and how artificial intelligence is used in their healthcare, including by doctors' offices and other medical providers. The findings point to a clear gap between how AI is being adopted in clinical settings and what patients expect to know about it.

Who should care: Healthcare professionals · Privacy officers · Compliance · General readers · AI governance · Policy

#healthcare#ai Read original →
Healthcare
HIPAA Journal · · US Federal

Resource Center of Dallas Notifies 12,500 Patients About Cyber Incident

Resource Center of Dallas has notified approximately 12,500 patients that their information was exposed in a cyber incident, joining several other healthcare organizations — including Kern Psychiatric Health and Wellness Center and The Asthma Center — in recently disclosing breaches.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Breach
HIPAA Journal · · US Federal

Midwest Spine and Brain Institute Impacted by Vendor Ransomware Attack

Midwest Spine and Brain Institute, along with Brookhaven ENT Allergy and Facial Surgery and Digestive Disease Center, have disclosed data breaches stemming from a ransomware attack on a shared vendor. The incidents follow a pattern of healthcare providers being exposed through third-party service relationships.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare#security Read original →
Breach
HIPAA Journal · · US Federal

Healthcare Data Breach Statistics – Updated for 2026

The HIPAA Journal has published an updated compilation of healthcare data breach statistics drawing on records from the Department of Health and Human Services dating back to October 2009. The report tracks the scale and trend of reported breaches across the U.S. healthcare sector over more than fifteen years.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
HIPAA Journal · · US Federal

Five Healthcare Providers Report Ransomware-Related Data Breaches

Five healthcare providers across multiple states, including Alta Orthopaedics in California, Cornerstone Behavioral Healthcare in Maine, and Cameron Regional Medical Center, have confirmed data breaches tied to ransomware attacks. The disclosures signal another wave of criminal intrusions targeting medical organizations and the sensitive patient data they hold.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare#security Read original →
Breach
CNIL · · EU / France

Health data breach: EUR 500,000 fine against HÔPITAL PRIVÉ DE LA LOIRE

France's data protection authority, the CNIL, has fined Hôpital Privé de la Loire €500,000 following a health data breach at the private hospital. The penalty signals regulatory willingness to hold healthcare institutions financially accountable for failing to protect sensitive patient information.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · Healthcare professionals

#breach#enforcement#healthcare Read original →
AI Governance
E Escudo Digital · · International

Navigating the EU AI Act: What high-risk rules mean for your business

The EU AI Act establishes a tiered risk framework, and systems classified as high-risk face the most demanding compliance requirements. Businesses deploying AI in areas like hiring, credit, healthcare, or critical infrastructure need to understand where their tools fall in that classification.

Who should care: AI governance · Lawyers · Administrators · Compliance · General readers · Policy

#ai-governance#regulation#ai Read original →
AI Governance
E Epstein Becker Green · · International

Jim Flynn and Alaap Shah Quoted in Healthcare IT News on Building AI Governance Before Deployment

Attorneys Jim Flynn and Alaap Shah of Epstein Becker Green were quoted in Healthcare IT News discussing the need to establish AI governance frameworks in healthcare settings before systems are deployed, not after.

Who should care: AI governance · Lawyers · Administrators · General readers · Policy

#ai-governance#ai Read original →
Breach
The Record · · International

Health data of more than 9.5 million people leaked from Aesto record system

Aesto, a healthcare data company, disclosed to federal regulators that a cyberattack last December exposed sensitive information belonging to more than 9.5 million people. The breach was reported this week.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance · Lawyers

#breach#healthcare#regulation Read original →
Healthcare
HIPAA Journal · · US Federal

Nutex Health Confirms Sensitive Data Stolen in August Cyberattack

Nutex Health, a Houston-based healthcare company operating dozens of micro-hospitals and specialty facilities, has confirmed that sensitive data was stolen during a cyberattack in August. The company manages care across 27 locations, meaning the breach likely affects patients across multiple sites.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Breach
BleepingComputer · · International

Aesto Health says data breach affects over 9.5 million patients

Aesto Health, a healthcare technology company, has disclosed a data breach affecting more than 9.5 million individuals. The company recently discovered the incident and has begun notifying those affected.

Who should care: Cybersecurity · Privacy officers · Administrators

Healthcare
HIPAA Journal · · US Federal

Hacking Incidents Announced by Rehabilitative Care Providers and Senior Living Facilities

Multiple rehabilitative care practices, senior living facilities, and skilled nursing providers in North Carolina have disclosed data breaches resulting from hacking incidents. The announcements follow a pattern of cyberattacks targeting healthcare organizations that handle sensitive patient information.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Healthcare
HIPAA Journal · · US Federal

ShinyHunters Claims Theft of 284M Records from Healthcare Giant McKesson

McKesson, one of the largest healthcare distribution companies in the United States, disclosed a cyberattack in a regulatory filing with the SEC. Hacking group ShinyHunters is claiming responsibility and alleges it stole 284 million records from the company.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Breach
DataBreaches.net · · International

VT: Local VA warns of possible data breach

The VA's White River Junction, Vermont healthcare facility disclosed that unencrypted communications containing veterans' personal health information were sent in error earlier this summer. The department acknowledged the incident in a public release, confirming the exposure was unintentional.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance · General readers · Policy

#breach#healthcare#privacy Read original →
Breach
DataBreaches.net · · International

PEAR leaks data allegedly exfiltrated from South Plains Rural Health Services while SPRHS remains silent

SuspectFile reports: A cyberattack against a Texas healthcare organization allegedly resulted in the exfiltration of approximately 1.4 TB of data, according to claims made by the ransomware group PEAR. The alleged victim is South Plains Rural Health Services, Inc. (SPRHS), a nonprofit healthcare organization that has provided services to rural communities across West Texas for decades. The information... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

Two different groups have recently attacked Interim HealthCare entities. Should other franchises be concerned?

Two separate threat actors have attacked different Interim HealthCare franchise locations, with breaches at the West Texas and Amarillo franchises affecting nearly 2,800 patients combined and triggering federal notifications to the Department of Health and Human Services.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#enforcement Read original →
AI Governance
M Mexico Business News · · International

The Week In Health: Clinic Expansion, AI Governance, Chronic Care

A weekly health news roundup covers three areas: expansion of clinic services, developments in AI governance within healthcare, and updates related to chronic care management.

Who should care: AI governance · Lawyers · Administrators · General readers · Policy

#ai-governance#ai Read original →
Healthcare
HIPAA Journal · · US Federal

HIPAA Without a Law Degree

A new guide aims to make HIPAA compliance accessible to small medical practices without requiring legal expertise. The resource is designed to help smaller healthcare providers understand and meet federal patient privacy obligations on their own.

Who should care: Healthcare professionals · Privacy officers · Compliance · Lawyers

#healthcare#regulation Read original →
Breach
DataBreaches.net · · International

National Kidney Registry allegedly hacked by DireWolf ransomware group

Since its emergence in May 2025, DireWolf has attacked several U.S. healthcare entities, as listed among its more than 100 targets on its dedicated leak site. As early analysts reporting on the group have noted, DireWolf encrypts victims’ files as part of their double-extortion attacks. Their “About” statement describes them as financially motivated: We are... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
AI Governance
G Grand View Research · · International

Healthcare AI Governance Platform Market Size Report 2033

A market research report projects the size and trajectory of the healthcare AI governance platform sector through 2033. The report, published by Grand View Research, covers the commercial landscape for tools designed to oversee AI use in healthcare settings.

Who should care: AI governance · Lawyers · Administrators · General readers · Policy

#ai-governance#ai Read original →
Breach
BleepingComputer · · International

Hospital operator Nutex Health says data stolen in cyberattack

Nutex Health, a hospital operator and healthcare services provider, is investigating a cyberattack in which an unauthorized party removed data from its systems. The company has not disclosed what types of information were taken or how many people may be affected.

Who should care: Cybersecurity · Privacy officers · Administrators

← Prev Page 2 of 7 Next →