HIPAA News
Jefferson Healthcare Settles Class Action Lawsuit Over PHI Disclosure

Jefferson Healthcare Settles Class Action Lawsuit Over PHI Disclosure

Jefferson Healthcare decided to resolve a class action lawsuit alleging the disclosure of sensitive information to third parties without patient permission as a result of installing Meta Pixel and other tracking tools on its site. Jefferson Healthcare provides its...

Trump Administration Plans to Improve Sharing of Patient Data

Trump Administration Plans to Improve Sharing of Patient Data

The Trump Administration reported a new initiative focused on enhancing interoperability and the exchange of medical information, and has gathered pledges from top healthcare and tech companies to develop a foundation for a next-gen digital health environment that...

MarinHealth Settles Class Action Meta Pixel Lawsuit for $3 Million

MarinHealth Settles Class Action Meta Pixel Lawsuit for $3 Million

MarinHealth agreed to pay $3 million to resolve a class action lawsuit over installing the Meta Pixel tracking code on its website from 2019 to 2025. MarinHealth manages Marin Health Medical Center and several outpatient clinics located in Sonoma County and Marin...

Webinar: Exxat and ComplianceJunction Launch New Partnership

Webinar: Exxat and ComplianceJunction Launch New Partnership

Across the USA, academic institutions are facing increased pressure to ensure that students are fully prepared to meet the compliance requirements of clinical practice. In response, ComplianceJunction and Exxat have joined forces to help close the student compliance...

Arisa Health Resolves Data Breach Litigation for $1.9 Million

Arisa Health Resolves Data Breach Litigation for $1.9 Million

Behavioral health system Arisa Health in Arkansas consented to pay $1.9 million to resolve a class action lawsuit associated with a cyberattack in March 2024. Threat actors gained access to the Arisa Health system and stole the protected health information (PHI) of...

MicroDicom DICOM Viewer’s High Severity Vulnerability

MicroDicom DICOM Viewer’s High Severity Vulnerability

DICOM, Digital Imaging and Communications in Medicine, had a high-severity vulnerability discovered in its MicroDicom DICOM Viewer, which is a free software program used to view and manipulate DICOM medical images. A threat actor can exploit the vulnerability remotely...

Kettering Health’s Key Services are Back After the Ransomware Attack

Kettering Health’s Key Services are Back After the Ransomware Attack

Three weeks after the Interlock ransomware attack on May 20, 2025, Kettering Health has affirmed the resumption of normal operations for important healthcare services. Kettering Health has been issuing frequent updates on the development being made to reestablish its...

Kettering Health Ransomware Attack Results in System Outage

Kettering Health Ransomware Attack Results in System Outage

Kettering Health operates 120 outpatient facilities and 14 medical centers in western Ohio. On May 20, 2025, it encountered organization-wide technology downtime that impacted 14 medical centers and call center operations. The disturbance caused critical IT systems to...

Oracle Health/Cerner Hack Affects Nearly 263,000 Individuals

Oracle Health/Cerner Hack Affects Nearly 263,000 Individuals

Integrated health system known as Union Health System, based in Terre Haute, Indiana, manages two hospitals and a medical group, which were impacted by a security breach that occurred at Oracle Health and Cerner. Oracle Health sent notification letters to healthcare...

Fortra Pays $20 Million to Settle Fortra GoAnywhere Data Breach Lawsuit

Fortra Pays $20 Million to Settle Fortra GoAnywhere Data Breach Lawsuit

A Federal judge has given preliminary approval of a $20 million settlement to resolve a multidistrict lawsuit against the software company Fortra in association with a 2023 hacking incident that impacted the Fortra GoAnywhere managed file transfer (MFT) solution. The...

PIH Health Pays $600K Fine for Multiple HIPAA Violations

PIH Health Pays $600K Fine for Multiple HIPAA Violations

The HHS’ Office for Civil Rights (OCR) reported the 6th financial penalty for 2025 involving alleged HIPAA Rules violation. Health care network PIH Health in California consented to resolve the HIPAA violations by paying $600,000 in financial penalty. In June 2019, a...

Guam Hospital Settles HIPAA Risk Analysis Violation for $25,000

Guam Hospital Settles HIPAA Risk Analysis Violation for $25,000

The Department of Health and Human Services’ Office for Civil Rights (OCR) reported its 7th HIPAA enforcement action as part of its HIPAA risk analysis enforcement initiative. The settlement of an alleged HIPAA risk analysis violation involved the Guam hospital...

Northeast Radiology to Pay $350,000 to Settle HIPAA Violation

Northeast Radiology to Pay $350,000 to Settle HIPAA Violation

The Department of Health and Human Services (HHS) Office for Civil Rights (OCR) issued a financial penalty to Northeast Radiology, P.C. for a HIPAA violation. This is the 4th financial penalty for HIPAA violation issued by OCR under the Trump administration and the...

Cyberattack on SimonMed Imaging on January 2025

Cyberattack on SimonMed Imaging on January 2025

SimonMed Imaging reported a cybersecurity incident at the beginning of this year where unauthorized individuals accessed patient information through one of its vendors. The radiology practice in Scottsdale, Arizona said that one vendor notified it on January 27, 2025...

Sunflower Medical Group Faces Data Breach Lawsuit

Sunflower Medical Group Faces Data Breach Lawsuit

Sunflower Medical Group is dealing with a class action lawsuit because of a recent data breach affecting the protected health information (PHI) of about 221,000 present and past patients. Sunflower Medical Group's private specialized medical center is located in four...

New York Woman Serves Probation Sentence for Criminal HIPAA Violation

New York Woman Serves Probation Sentence for Criminal HIPAA Violation

A woman from New York received a probation sentence averting imprisonment for a criminal violation of the Health Insurance Portability and Accountability Act (HIPAA). She is also required to pay restitution of approximately $13,000. On March 23, 2023, 53-year-old...

Illinois Legacy Professionals Faces Lawsuit Over Data Breach

Illinois Legacy Professionals Faces Lawsuit Over Data Breach

Certified public accountancy company Legacy Professionals based in Illinois notified about 217,000 people concerning a security incident and data theft in April 2024. The company discovered suspicious activity in its computer system at the end of April and launched a...

Raise the level of HIPAA Awareness in your organization with Learner-Friendly, Comprehensive and Affordable HIPAA Training.

COMPREHENSIVE HIPAA TRAINING

Please enable JavaScript in your browser to complete this form.

Privacy is key to everything that we do at J Flowers Health Institute. We require the highest data privacy standards in our daily operations between our team members and patients. The HIPAA compliance and cyber security training we provide to our teams with ComplianceJunction creates enormous value for our organization.

Kevin DeLoach

Chief Operating Officer
J. Flowers Health Institute