logo

Update: Regulator says Ransomware Infections Likely Reportable Under HIPAA

ID: f097238e-3ab5-5430-ad11-56ad3da29b8d

STIX ID: report--f097238e-3ab5-5430-ad11-56ad3da29b8d

Feed Name: Security Ledger

Threat Score
65/100

Date Published: 2016-07-14

Date Updated: 2026-05-08

Author: Paul Roberts

...
...

The Department of Health and Human Services issued guidance declaring that ransomware infections which encrypt or otherwise affect electronic protected health information (ePHI) generally constitute HIPAA reportable breaches; organizations must perform thorough analysis to prove a "low probability" of compromise or proceed with breach notifications, heightening regulatory and operational consequences for healthcare providers.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.