Close Menu
Global News HQ
    What's Hot

    Trump’s court pick would bring crypto baggage to the bench

    July 18, 2025

    CISA Alert: Liteon Electric Vehicle Chargers

    July 18, 2025

    What Is Sun Poisoning? Plus, How to Prevent and Treat It

    July 18, 2025
    Recent Posts
    • Trump’s court pick would bring crypto baggage to the bench
    • CISA Alert: Liteon Electric Vehicle Chargers
    • What Is Sun Poisoning? Plus, How to Prevent and Treat It
    • Anker’s new charging station battles desktop clutter with two retractable USB-C cables
    • TSMC: The Bull Run Has Only Just Begun (NYSE:TSM)
    Facebook X (Twitter) Instagram YouTube TikTok
    Trending
    • Trump’s court pick would bring crypto baggage to the bench
    • CISA Alert: Liteon Electric Vehicle Chargers
    • What Is Sun Poisoning? Plus, How to Prevent and Treat It
    • Anker’s new charging station battles desktop clutter with two retractable USB-C cables
    • TSMC: The Bull Run Has Only Just Begun (NYSE:TSM)
    • Tracee Ellis Ross Reveals Her Surprising Plane ‘Game’—and Why She Never Eats on a Flight
    • OpenAI’s new ChatGPT agent reasons, researches, and run its own computer
    • Should Your Side Tables Always Match? We Asked Designers for the Definitive Answer
    Global News HQ
    • Technology & Gadgets
    • Travel & Tourism (Luxury)
    • Health & Wellness (Specialized)
    • Home Improvement & Remodeling
    • Luxury Goods & Services
    • Home
    • Finance & Investment
    • Insurance
    • Legal
    • Real Estate
    • More
      • Cryptocurrency & Blockchain
      • E-commerce & Retail
      • Business & Entrepreneurship
      • Automotive (Car Deals & Maintenance)
    Global News HQ
    Home - Legal - OCR Reaches Settlement with Health Care Network Health Over HIPAA Violations Stemming from Phishing Attack
    Legal

    OCR Reaches Settlement with Health Care Network Health Over HIPAA Violations Stemming from Phishing Attack

    Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp VKontakte Email
    OCR Reaches Settlement with Health Care Network Health Over HIPAA Violations Stemming from Phishing Attack
    Share
    Facebook Twitter LinkedIn Pinterest Email


    On April 23, 2025, the Department of Health and Human Services’ Office for Civil Rights (“OCR”) announced a HIPAA enforcement action against PIH Health, Inc. (“PIH”), a California-based health care network, following a phishing attack that exposed patients’ electronic protected health information (“ePHI”). The settlement highlights OCR’s continued focus on ensuring that covered entities implement robust security programs capable of identifying and mitigating threats to ePHI.

    The investigation stemmed from a breach report submitted by PIH in January 2020, which disclosed that in June 2019, a phishing attack had compromised the email accounts of 45 employees. The attack resulted in the unauthorized disclosure of unsecured ePHI belonging to 189,763 individuals, including names, addresses, dates of birth, driver’s license numbers, Social Security numbers, medical diagnoses, lab results, medications, treatment and claims information, and financial data.

    OCR’s investigation uncovered multiple potential violations of the HIPAA Privacy, Security and Breach Notification Rules, including PIH’s failure to (1) use or disclose PHI as required by the Privacy Rule, (2) conduct an accurate and thorough risk analysis of security vulnerabilities affecting ePHI, and (3) provide timely breach notification to affected individuals, HHS, and the media.

    To resolve the matter, PIH agreed to a $600,000 monetary settlement and to implement a two-year corrective action plan. Under the corrective action plan, PIH is required to conduct a comprehensive HIPAA risk analysis, develop and implement a risk management plan to address identified vulnerabilities, revise and maintain HIPAA-compliant policies and procedures, and provide workforce training on HIPAA requirements for safeguarding PHI.

    This enforcement action underscores OCR’s expectation that covered entities proactively assess and strengthen their HIPAA compliance programs to address evolving cybersecurity threats such as phishing attacks. It also follows two recent additional settlements announced by OCR involving failures to implement basic safeguards under the HIPAA Security Rule, reinforcing the agency’s continued emphasis on holding regulated entities accountable for cybersecurity-related compliance lapses.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Email
    Previous ArticleWhat DOGE is Doing Now
    Next Article I replaced my iPad with this cheap Android 15 tablet, and it surprisingly held up

    Related Posts

    CISA Alert: Liteon Electric Vehicle Chargers

    July 18, 2025

    Saying The Quiet Part Loud: Some Potential Hard AI Truths For Legal – Above the Law

    July 17, 2025

    Trump Administration Fires SDNY Prosecutor Maurene Comey, Who Led High-Profile Sex-Trafficking Cases | Law.com

    July 17, 2025

    Meta’s Board Backed Zuckerberg Amid Privacy Scandals, Ex-Board Member Testifies | Law.com

    July 17, 2025
    Leave A Reply Cancel Reply

    ads
    Don't Miss
    Cryptocurrency & Blockchain
    3 Mins Read

    Trump’s court pick would bring crypto baggage to the bench

    Eric Tung, a corporate lawyer with a track record of representing crypto firms, is poised…

    CISA Alert: Liteon Electric Vehicle Chargers

    July 18, 2025

    What Is Sun Poisoning? Plus, How to Prevent and Treat It

    July 18, 2025

    Anker’s new charging station battles desktop clutter with two retractable USB-C cables

    July 18, 2025
    Top
    Cryptocurrency & Blockchain
    3 Mins Read

    Trump’s court pick would bring crypto baggage to the bench

    Eric Tung, a corporate lawyer with a track record of representing crypto firms, is poised…

    CISA Alert: Liteon Electric Vehicle Chargers

    July 18, 2025

    What Is Sun Poisoning? Plus, How to Prevent and Treat It

    July 18, 2025
    Our Picks
    Cryptocurrency & Blockchain
    3 Mins Read

    Trump’s court pick would bring crypto baggage to the bench

    Eric Tung, a corporate lawyer with a track record of representing crypto firms, is poised…

    Legal
    2 Mins Read

    CISA Alert: Liteon Electric Vehicle Chargers

    If you own an electric vehicle, keep an eye on cybersecurity issues that may affect…

    Pages
    • About Us
    • Contact Us
    • Disclaimer
    • Homepage
    • Privacy Policy
    Facebook X (Twitter) Instagram YouTube TikTok
    • Home
    © 2025 Global News HQ .

    Type above and press Enter to search. Press Esc to cancel.

    Go to mobile version