❌

Normal view

There are new articles available, click to refresh the page.
Today β€” 18 October 2025Main stream

Massachusetts hospitals Heywood, Athol say outage was a cybersecurity incident

By: Dissent
17 October 2025 at 21:43
Joseph Topping reports: Heywood Hospital and Athol Hospital said a network outage this week was caused by a cybersecurity incident. The hospitals said they took affected systems offline and engaged a third-party cybersecurity firm. The facilitiesβ€”Heywood Hospital in Gardner, Massachusetts, and Athol Hospital in Athol, Massachusettsβ€”remain open and caring for patients; earlier in the week...

Source

Yesterday β€” 17 October 2025Main stream

Heritage Provider Network $49.99M Class Action Settlement

By: Dissent
16 October 2025 at 06:55
Nicole Aljet reports an update on a data breach that had been disclosed by Regal Medical Group in February 2023. Current and former patients who received a notice in early 2023 stating aΒ data breachΒ involving Heritage Provider Network or its affiliates may have exposed their personal or medical information could qualify to claim a cash payment...

Source

Integris Health Agrees to $30 Million Settlement Over 2023 Data Breach

By: Dissent
16 October 2025 at 06:51
Lauren Giella reports: Oklahoma health system Integris Health reached a $30 million settlement in a data breach class action lawsuit that impacted over two million people over two years ago. This agreement settles a class action lawsuit filed in the U.S. District Court for the Western District of Oklahoma that accuses Integris of negligence after...

Source

Before yesterdayMain stream

They were victims of a massive data breach in 2009. Interior Health denied it for a decade.

By: Dissent
11 October 2025 at 13:28
Harvey Cashore, Eva Uguen-Csenge,Β  and Mark Kelley report: Kelowna nurse Ashley Stone sits down at her kitchen table, opens a bulky blue folder containing a paper trail of 10 years of multiple frauds committed in her name by imposters and gets right to the point. β€œIt’s just been a nightmare.” She says she’s had to...

Source

Watsonville Community Hospital had a data breach β€” or two. It would be helpful to know which.

By: Dissent
10 October 2025 at 17:38
On December 8, 2024, DataBreaches reported that Watsonville Community Hospital in California was continuing to respond to what they referred to as a cyberattack on November 29. No gang had claimed responsibility at that point, patients hadn’t been notified yet, and the hospital wasn’t stating whether the attack involved encryption of any files. Weeks later,...

Source

Missing Risk Analysis Cost NY CPA Firm $175Kβ€”But Not the Big Group Whose Data Was Breached in 2019

By: Dissent
9 October 2025 at 09:41
Theresa Defino reports: Covered entities (CEs) and business associates (BAs) might be forgiven if the most recent HHS Office for Civil Rights (OCR) HIPAA enforcement action evoked little more than a yawn. Yes, the $175,000 payment isn’t a particularly large amount, and the sole alleged violation is a retread. Actually, it’s the 10th in OCR’s...

Source

Vn: Major hospitals hit by cyberattacks, patient data sold on hacker forums

By: Dissent
9 October 2025 at 07:22
Over the years, DataBreaches has noted hospitals in APAC countries having data leaked or being hit with ransomware attacks, but I have not seen a lot of reviews. An article by Thai Khang in VietnamNet names mentions some of the bigger hospital breaches in Vietnam since 2024, and then continues: According to Thuy, in the...

Source

California hospitals can escape fines if workers expose patient info

By: Dissent
7 October 2025 at 12:18
Scott Holland reports that a California state appeals court agreed with a hospital that it should not be held liable for employee misbehavior if they had a clear policy in place but the employee knowingly violated it: A state appeals panel has agreed hospitals can’t be sued if one of their employees posts confidential patient...

Source

Harris Health discloses insider-wrongdoing breach that went on for a decade

By: Dissent
7 October 2025 at 07:56
Here is today’s reminder of the insider threat and why it may be challenging, but it’s still necessary, to monitor and audit employee access to patient records to spot any inappropriate access. Harris Health is notifying more than 5,000 patients that an employee β€” who was fired and referred to law enforcement when their wrongdoing...

Source

Leak of patient records feared as Israeli hospital hit by cyberattack demanding ransom

By: Dissent
2 October 2025 at 18:49
The Times of Israel reports: The Assaf Harofeh Medical Center in the central city of Beer Yaakov was targeted by a cyberattack over Yom Kippur, according to a joint announcement from the hospital, the Health Ministry and the National Cyber Directorate. Authorities were investigating the possibility of a leak as a result of the attack....

Source

Archer Health was leaking protected health information. Criminals appear to have found it. (2)

By: Dissent
26 September 2025 at 16:03
From our β€œNo Need to Hack When It’s Leaking” files, a report involving Archer Health, an in-home healthcare provider. Website Planet recently reported a misconfigured bucket that was found by researcher Jeremiah Fowler.Β  The unencrypted and non-password-protected database reportedly contained approximately 145k files (totaling 23 GB). β€œIn a limited sampling of the exposed files, I...

Source

Columbia University Irving Medical Center pays $600K in data breach lawsuit settlement

By: Dissent
26 September 2025 at 14:44
In May 2024, DataBreaches logged an incident on our worksheets that involved the Columbia University Irving Medical Center in New York. The incident had been reported to HHS as affecting 29,629 patients whose name, medical record number, date of birth, provider name, and laboratory test result had been exposed between Sept. 11, 2023, and March...

Source

ApolloMD notifies patients of 11 physician practices affected by a June cyberattack

By: Dissent
26 September 2025 at 12:43
On June 12, 2025, Qilin added ApolloMD to their darkweb leak site with a date of June 6. They claimed to have 238 GB of files. ApolloMD, headquartered in Georgia, is a business associate to hospitals and health systems, providing them with services to enhance clinical operations and patient care, and to optimize financial performance....

Source

Verily Faces Lawsuit Over Alleged HIPAA Violations

By: Dissent
24 September 2025 at 17:15
John Blacksmith reports: Verily, owned by Alphabet, is facing a lawsuit filed by an ex-employee who alleges the misuse of the personally identifiable health information of over 25,000 patients, and the failure of the company to submit HIPAA breach reports, as per the Health Insurance Portability and Accountability Act (HIPAA) requirement. Verily, previously known as...

Source

Medical Associates of Brevard notifies 246,711 patients after cyberattack

By: Dissent
19 September 2025 at 11:28
On January 23, 2025, the Bian Lian ransomware gang added the Medical Associates of Brevard (β€œMAB”) to its dark web leak site. At the time, they listed the types of data they claimed to have acquired, but did not provide any screenshots or proof of claims. Months later, BianLian went offline. What happened to any...

Source

Two teenage suspected Scattered Spider members charged in UK over TfL hack; U.S. unseals charges (1)

By: Dissent
18 September 2025 at 09:36
Alexander Martin reports: Two suspected members of the Scattered Spider cybercrime collective have been arrested and charged in the United Kingdom following an investigation into the hack of Transport for London (TfL) last year. The National Crime Agency (NCA) announced on Thursday that Thalha Jubair, 19, from East London, and Owen Flowers, 18, from Walsall,...

Source

Survival Flight reports second cybersecurity incident in less than a year (1)

By: Dissent
18 September 2025 at 09:08
Survival Flight is an Arizona-headquartered firm that provides ground and air emergency medical transportation services. On August 12, they issued a substitute notice saying that on July 17, they had discovered a cybersecurity incident affecting its IT systems. In their substitute notice, which has not been updated as of this publication, they wrote: The investigation...

Source

Microsoft seizes 338 websites to disrupt rapidly growing β€˜RaccoonO365’ phishing service

By: Dissent
18 September 2025 at 06:51
Giles Bruce reports: Microsoft hasΒ seizedΒ 338 phishing websites associated with a cybercrime service that targeted at least 20 U.S. healthcare organizations. Using a court order granted by the U.S. District Court for the Southern District of New York, the tech giant’s Digital Crimes Unit disrupted RaccoonO365, which offers subscription-based phishing kits allowing novices to mimic official...

Source

FBI β€˜aware’ of Anchorage health clinic data breach as hackers claim 60K patients impacted

By: Dissent
16 September 2025 at 08:17
Will Courtney reports: Days after anΒ anonymous hacker group claimed they had leakedΒ an additional 50,000 Anchorage Neighborhood Health Center patient records, an FBI spokesperson confirmed Monday they are aware of the claim. β€œThe FBI Anchorage Field Office is aware of the alleged data breach affecting the Anchorage Neighborhood Health Center and takes allegations of this nature...

Source

US national charged in Finnish psychotherapy center extortion

By: Dissent
16 September 2025 at 07:15
Alexander Martin reports: Finnish prosecutors have charged a second individual β€” U.S. national Daniel Lee Newhard β€” with attempted extortion of the Vastaamo psychotherapy center. The Finnish Prosecution Service announced on Monday it had charged Newhard with aiding and abetting attempted aggravated extortion. It said the suspect, a 28-year-old, denies the offense. Officials did not...

Source

❌
❌