Privacy and Security

  • News
  • Features
  • Multimedia

04/22/2013

Perspective: Health-Related Social Media Should Protect Privacy

In a perspective piece for the Journal of the American Medical Informatics Association, Jingquan Li of Texas A&M University writes that health-related social networking websites should have privacy frameworks in place to let users monitor and control how their personal health data are shared. FierceHealthIT.

04/18/2013

Health System Faces Lawsuit Over Breach Affecting 763K Patients

A former patient is suing Adventist Health System over allegations that the organization failed to protect the electronic health information of 763,000 patients affected by a data breach. The lawsuit is seeking class action status, injunctive relief and damages. HealthITSecurity et al.

04/16/2013

HITRUST Announces Release of Guidance on Cybersecurity Controls

New guidance from the Health Information Trust Alliance aims to help health care organizations use HITRUST's Common Security Framework to assess their cybersecurity preparedness. HITRUST is accepting public input on the guidance. Clinical Innovation & Technology et al.

04/16/2013

Researchers Seek To Recreate Database on Genetic Variations

After Myriad Genetics stopped providing access to its massive database of gene mutations, a team of researchers launched a grassroots project to gather the information by asking geneticists and clinics to share de-identified data from Myriad's gene test reports. New York Times.

04/10/2013

Medical Students Seek To Opt Out of AMA's Physician Masterfile

The American Medical Student Association says that the American Medical Association's Physician Masterfile -- which contains doctors' personal and prescribing information -- should be used only for research and should not be sold for commercial uses. Modern Physician.

04/08/2013

Univ. of Florida Alerts 14,339 Patients About Risk of Identity Theft

Data breaches at a University of Florida clinic could have exposed the personal data of 14,339 patients. Law enforcement officials have arrested two individuals who allegedly stole patient data and had ties to an identity theft ring. Gainesville Sun, Health Data Management.

04/04/2013

Framework Outlines Key Principles for Protecting Privacy of Patient Data

The new Privacy Trust Framework published by Patient Privacy Rights describes 75 auditable criteria based on 15 core privacy principles. The framework aims to help health care organizations measure how well they protect patient data. HealthITSecurity, Health Data Management.

03/26/2013

Several New Rules To Expand, Update HIPAA Provisions Take Effect

Today is the effective date for multiple new rules that expand and update HIPAA provisions to implement tougher privacy and security protections. However, compliance for the majority of the new rules' provisions will not be required for another six months. Modern Healthcare.

03/20/2013

Lawmakers Say Mich. Is Improperly Storing Data on People Tested for HIV

Michigan lawmakers say that efforts to store data on people who undergo HIV tests are improper under state privacy rules. However, state officials say their system encodes and encrypts names so personal identifying information is not accessible. The American Independent.

03/19/2013

Hackers From China Increasingly Targeting Medical Organizations

According to experts, hackers from China increasingly are targeting health care providers, insurers and other medical organizations.  Experts say the hackers are obtaining data about drug or technology breakthroughs, as well as the business practices of health care firms. Dark Reading.

03/19/2013

OCR Seeks Input on Survey of HIPAA Audit Program Participants

HHS' Office for Civil Rights recently issued a Federal Register notice seeking feedback on its plans to survey health care organizations that participated in a HIPAA audit pilot program last year. Clinical Innovation & Technology, Health Data Management.

03/15/2013

Disease Registry To Let Patients Control How Their Data Are Used

Next month, Genetic Alliance will launch a new disease registry that allows patients to determine how their data are used for medical research. Proponents of the venture say giving patients more control over their data could boost participation in medical studies. MIT Technology Review.

03/15/2013

Lawsuit Claims IRS Improperly Accessed 60M Medical Records

An unnamed HIPAA-covered entity in California has filed a class-action lawsuit against the Internal Revenue Service, claiming that IRS agents improperly accessed about 60 million health records belonging to about 10 million U.S. residents. The lawsuit seeks punitive damages for constitutional violations, as well as $25,000 per violation per affected individual. Healthcare IT News et al.

03/14/2013

Google Fined for Intercepting Health Data, Other Information

Google has agreed to pay a $7 million fine as part of a multistate settlement acknowledging that the company violated individuals' privacy by collecting electronic medical data and other information during its Street View mapping project. Google collected the data from unencrypted wireless networks as the Street View vehicle passed by houses and businesses. New York Times, Bloomberg.

03/08/2013

Report: VA Used Unencrypted Network To Send Health Data

A report by the Department of Veterans Affairs' Office of Inspector General finds that VA has transmitted veterans' private information -- including electronic health record data, birth dates and Social Security numbers -- over an unencrypted telecommunications carrier network. According to the report, use of the network makes the data vulnerable to hackers. FierceGovernmentIT et al.

Click to register for iHealthBeat