Data breach triggered by phishing emails

About 12,000 patients potentially had their personal health information breached due to a phishing scam.

In January, Catholic Health Initiatives (CHI) care systems, based in Tacoma, Wash., learned that phishing emails were sent to a small group of employees from CHI-owned health systems. These employees responded to the emails believing they were legitimate requests from parent company CHI. “When we learned of this, we immediately secured the affected email accounts and began an investigation, including hiring an outside expert forensics firm,” according to CHI.

A subsequent investigation confirmed that a number of employee email accounts had been compromised. The hackers posed as CHI employees to obtain email logins to employee accounts. Forensics research determined that the hackers could have viewed patient demographic information, clinical information, and in a small number of instances Social Security numbers, the health system said.

Around the web

Compensation for heart specialists continues to climb. What does this say about cardiology as a whole? Could private equity's rising influence bring about change? We spoke to MedAxiom CEO Jerry Blackwell, MD, MBA, a veteran cardiologist himself, to learn more.

The American College of Cardiology has shared its perspective on new CMS payment policies, highlighting revenue concerns while providing key details for cardiologists and other cardiology professionals. 

As debate simmers over how best to regulate AI, experts continue to offer guidance on where to start, how to proceed and what to emphasize. A new resource models its recommendations on what its authors call the “SETO Loop.”