Cybersecurity

The digital security of healthcare institutions and data is a growing concern, with an increasing number of cyberattacks each year against healthcare systems, which are seen as easy targets. Cyber attacks often use ransomware to target personal health information, patient data and medical devices to cut off access to the data until a ransom is payed to the hacker. Cybercriminals have become more sophisticated, using malware, ransomware and spyware to attack outdated and vulnerable systems and software. Due to the interconnected nature of hospital IT systems today, the weakest link can be older web-enabled medical devices, including clinical and non-clinical systems. Employees are also a major target of attacks via malicious e-mails that prompt them to open attachments that then download malware onto the hospital's IT system.

Calif. hospital reports breach

A computer containing an index file that held limited patient information was stolen from Eisenhower Medical Center on March 11.

AHIMA updates ICD-10 tools

The American Health Information Management Association (AHIMA) has updated its ICD-10 tools with a Top 10 List for Phase 1 ICD-10-CM/PCS Implementation Plan Development and Impact Assessment.

California hospital signs FairWarning

Methodist Hospital of Southern California, in Arcadia, Calif., has selected privacy auditor FairWarning to upgrade patient privacy in its EHR system.

Access Denied: Avoiding Patient Data Disasters

The best way to avoid data breaches is to lock down everything. We wish. While thats not possible, data encryption and strongestablished, known and enforcedpolicies can certainly help.

Mass General coughs up $1M to settle HIPAA violation

Massachusetts General Hospital in Boston has agreed to pay the U.S. government $1 million to settle potential violations of the HIPAA Privacy Rule, according to the U.S. Department of Health and Human Services (HHS). This is the second financial penalty issued by HHS for a covered entitys violations of HIPAA, as a $4.3 million fine was announced earlier this week.

HHS issues $4.3M fine to Maryland provider over HIPAA violation

The U.S. Department of Health and Human Services (HHS) Office for Civil Rights has issued a notice of determination finding that Cignet Health of Prince Georges County, Md., violated the Privacy Rule of HIPAA. HHS has imposed a civil money penalty of $4.3 million for the violations, representing the first financial penalty issued by HHS for a covered entitys violations of HIPAA.

StealthWatch 6.0 unveiled

Networking company Lancope has unveiled the next generation of its StealthWatch System, which leverages flow data to deliver end-to-end network visibility and greater forensic intelligence for industries, including healthcare.

Univ. of Iowa Hospital discloses potential data breach

The University of Iowa Hospitals has disclosed a potential data breach involving the EMRs of several University of Iowa football players.

Around the web

The tirzepatide shortage that first began in 2022 has been resolved. Drug companies distributing compounded versions of the popular drug now have two to three more months to distribute their remaining supply.

The 24 members of the House Task Force on AI—12 reps from each party—have posted a 253-page report detailing their bipartisan vision for encouraging innovation while minimizing risks. 

Merck sent Hansoh Pharma, a Chinese biopharmaceutical company, an upfront payment of $112 million to license a new investigational GLP-1 receptor agonist. There could be many more payments to come if certain milestones are met.