PrivacySignal

Search & browse the archive

The full corpus — beyond today's front page.

Reset

78 results · page 3 of 4

Healthcare
HIPAA Journal · · US Federal

ClickFix Social Engineering Technique is the Leading Method for Malware Delivery

The ClickFix social engineering technique is the leading method of malware delivery, according to an analysis by researchers at ReliaQuest. […] The post ClickFix Social Engineering Technique is the Leading Method for Malware Delivery appeared first on The HIPAA Journal.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare#security Read original →
Healthcare
HIPAA Journal · · US Federal

Building a HIPAA Compliance Program as a Dental Office Manager

A guide aimed at dental office managers outlines the steps involved in building a HIPAA compliance program, starting with identifying how protected health information flows through a dental practice. The piece walks through the practical groundwork required to meet federal privacy and security requirements in a clinical office setting.

Who should care: Healthcare professionals · Privacy officers · Compliance · Lawyers

#healthcare#regulation Read original →
Healthcare
HIPAA Journal · · US Federal

HHS Provides Update on its Artificial Intelligence RFI

The Department of Health and Human Services has released an update on its Artificial Intelligence Request for Information, outlining how it intends to accelerate AI adoption across the agency. The update signals that HHS is moving from information-gathering toward more concrete plans for integrating AI into federal health programs.

Who should care: Healthcare professionals · Privacy officers · Compliance · AI governance · Lawyers · Administrators · General readers · Policy

#healthcare#ai-governance#ai Read original →
Healthcare
HIPAA Journal · · US Federal

Take the Guesswork out of HIPAA Compliance for Small Practices

The HIPAA Journal has published guidance aimed at small medical practices struggling with inconsistent or assumption-based approaches to HIPAA compliance, arguing that documented, systematic processes should replace informal judgments about what protections are already in place.

Who should care: Healthcare professionals · Privacy officers · Compliance · Lawyers

#healthcare#regulation Read original →
Healthcare
HIPAA Journal · · US Federal

Security Researcher Identifies Quintet of Bugs in Toolkit Used in DICOM Medical Imaging Software

A quintet of vulnerabilities has been identified in a DICOM toolkit – OFFIS DCMTK – that is extensively used in […] The post Security Researcher Identifies Quintet of Bugs in Toolkit Used in DICOM Medical Imaging Software appeared first on The HIPAA Journal.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare#security Read original →
Healthcare
HIPAA Journal · · US Federal

HIPAA Compliance Made Easy for Small Practices

The HIPAA Journal published a practical guide aimed at small medical practices working to meet federal privacy and security requirements under HIPAA, covering obligations under both the Privacy Rule and the Security Rule.

Who should care: Healthcare professionals · Privacy officers · Compliance · Lawyers · General readers · Policy

#healthcare#regulation#privacy Read original →
Healthcare
HIPAA Journal · · US Federal

Medtronic Starts Notifying Individuals Affected by April 2026 Cyberattack

Medtronic has begun notifying people whose data was exposed in a cyberattack that occurred in April 2026, with the ShinyHunters threat group claiming responsibility for the breach. The medical device company's notification process follows reporting by The HIPAA Journal.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Healthcare
HIPAA Journal · · US Federal

DOJ’s Using Advanced Data Analytics and AI Tools to Combat Healthcare Fraud Before Payment

The DOJ's 2026 National Health Care Fraud Takedown resulted in record Medicaid fraud charges, with the agency crediting advanced data analytics and AI tools for enabling intervention before fraudulent payments are made rather than after.

Who should care: Healthcare professionals · Privacy officers · Compliance · General readers · AI governance · Policy

#healthcare#ai Read original →
Healthcare
HIPAA Journal · · US Federal

Allina Health System to Pay $12.5 Million to Settle Pixel Litigation

Allina Health System, a Minneapolis-based nonprofit serving patients in Minnesota and Western Wisconsin, has agreed to pay $12.5 million to settle litigation tied to its use of tracking pixels on its website or patient portal. The case follows a broader wave of lawsuits against health systems over third-party tracking tools that allegedly transmitted patient data to companies like Meta and Google.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Healthcare
HIPAA Journal · · US Federal

Data Breaches Reported by Amicus Solutions: Huntsville Hospital Health System

Amicus Solutions, also known as Fedora Solutions, has disclosed a cybersecurity incident that affected Huntsville Hospital Health System. The hospital confirmed it was impacted by the breach, which was reported in connection with HIPAA compliance obligations.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Healthcare
HIPAA Journal · · US Federal

South Florida Injury Centers; Chickasaw Nation Department of Health Report Data Breaches

South Florida Injury Centers reported a hacking incident, and the Chickasaw Nation Department of Health disclosed a separate data breach, according to reporting in the HIPAA Journal. Both incidents involve healthcare entities covered under federal patient privacy rules.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Healthcare
HIPAA Journal · · US Federal

Remote Desktop Tools are the Front Door in Healthcare, and Hackers are Walking Through

Healthcare organizations are increasingly being breached through remote desktop tools, which attackers are exploiting as a primary entry point, according to reporting in the HIPAA Journal. The trend persists even as overall cyberattack volume has shown some decline, per data from cybersecurity firm SonicWall.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Healthcare
HIPAA Journal · · US Federal

HIPAA Compliance Software

The HIPAA Journal has published an overview of HIPAA compliance software, describing how these tools are designed to help covered entities and business associates manage their obligations under federal health privacy law.

Who should care: Healthcare professionals · Privacy officers · Compliance · Lawyers

#healthcare#regulation Read original →
Healthcare
DataBreaches.net · · International

UK: Boy’s medical records may have been accessed inappropriately after crocodile attack at zoo

Up to 40 NHS staff members may have improperly accessed the medical records of a young boy who was injured in a crocodile attack at a Cambridgeshire zoo. The case is under review amid concerns that access controls were not adequate for a high-profile patient.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Healthcare
HIPAA Journal · · US Federal

High-Severity Vulnerability Identified in OHIF Viewers DICOM

A high-severity vulnerability has been identified in OHIF (Open Health Imaging Foundation) Viewers DICOM, which could be exploited to steal […] The post High-Severity Vulnerability Identified in OHIF Viewers DICOM appeared first on The HIPAA Journal.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare#security Read original →
Healthcare
HIPAA Journal · · US Federal

Why You Don’t Need to Understand HIPAA to Make Your Small Practice HIPAA Compliant

An article from The HIPAA Journal argues that small medical practice owners can achieve HIPAA compliance without deep technical or legal knowledge of the regulation, suggesting that compliance is attainable through practical tools and guidance rather than expertise in the underlying rules.

Who should care: Healthcare professionals · Privacy officers · Compliance · Lawyers

#healthcare#regulation Read original →
Healthcare
HIPAA Journal · · US Federal

Colorado Health Network; Kentucky Mountain Health Alliance Announce Data Breaches

Colorado Health Network and Kentucky Mountain Health Alliance have each disclosed separate data breaches, according to reporting in the HIPAA Journal. Details on the scope and nature of the compromised data remain limited in the available excerpt.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Healthcare
HIPAA Journal · · US Federal

Minnesota Epilepsy Group; Campbell University; City of Middletown Announce Data Breaches

Three separate organizations — Minnesota Epilepsy Group, Campbell University, and the City of Middletown, Ohio — have each disclosed data breaches. The incidents span healthcare, higher education, and local government, suggesting no single attack but a broad pattern of exposure across different sectors.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Healthcare
EDPS · · EU

Newsletter Digest - news from the EDPS

The European Data Protection Supervisor has released a newsletter covering four priority areas: the European Commission's Digital Omnibus legislative debate, cross-border health data protection, privacy safeguards for the EU Visa Application Platform's chatbot, and transparency in EU funding.

Who should care: Healthcare professionals · Privacy officers · Compliance · Lawyers · AI governance · General readers · Policy

#healthcare#gdpr#ai Read original →
Healthcare
HIPAA Journal · · US Federal

HIPAA Security Rule Training for Business Associates

The HIPAA Security Rule imposes direct compliance obligations on business associates that handle electronic protected health information on behalf of covered entities, requiring them to implement specific safeguards and workforce training programs.

Who should care: Healthcare professionals · Privacy officers · Compliance · Lawyers

#healthcare#regulation Read original →
Healthcare
HIPAA Journal · · US Federal

Healthcare Report Highlights Growing Vendor Risk and Lack of Cyberattack Readiness

A new healthcare cybersecurity report finds that healthcare organizations face mounting vulnerabilities as their attack surfaces expand, with third-party vendors and AI tool adoption compounding readiness gaps against cyber threats.

Who should care: Healthcare professionals · Privacy officers · Compliance · General readers · AI governance · Policy

#healthcare#ai Read original →
Healthcare
HIPAA Journal · · US Federal

British Scattered Spider Hacker Pleads Guilty to Cyberattacks on TfL; SSM Health Care; Sutter Health

A British member of the Scattered Spider hacking group has pleaded guilty to cyberattacks on Transport for London, SSM Health Care, and Sutter Health, with a second British hacker also pleading guilty in connection with the TfL breach. The cases mark a rare instance of criminal accountability for a group linked to a string of high-profile intrusions.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Healthcare
Inside Privacy (Covington) · · International

Vermont Enacts Privacy Legislation to Regulate Health-Related Information

Vermont has passed two health-focused privacy laws: H.639, which regulates direct-to-consumer genetic testing companies, and S.71, a broader privacy act that adds extra protections for consumer health data. Both measures expand the state's oversight of how sensitive personal health information is collected and used.

Who should care: Healthcare professionals · Privacy officers · Compliance · Lawyers · Cybersecurity · General readers · Policy

#healthcare#state-privacy#regulation#surveillance#privacy Read original →
Healthcare
A Atlantic Council · · International

Balancing openness and control: Cross-border health data and AI governance in China

The Atlantic Council has examined how China is navigating the tension between enabling cross-border health data flows and maintaining state control over that data, within the context of its broader AI governance framework.

Who should care: Healthcare professionals · Privacy officers · Compliance · AI governance · Lawyers · Administrators · General readers · Policy

#healthcare#ai-governance#ai Read original →
← Prev Page 3 of 4 Next →