The Federal Trade Commission (FTC) and the U.S. Health and Human Services Office for Civil Rights (OCR) have issued a joint letter reminding healthcare organizations about their responsibilities for third-party disclosures of protected health information. The agencies warn about the privacy and security risks related to third-party tracking tools that can gather sensitive medical data without users’ knowledge. The letter emphasizes that HIPAA Rules apply to the collection and disclosure of PHI through tracking technologies. The FTC also highlights the importance of consumer protection laws in safeguarding health information.

Week in review: How QR code attacks work and how to protect yourself, 10 must-reads for CISOs
Cybersecurity news over the past week highlighted the risks of increasing QR code attacks and social media scams. AI-powered simulations may enhance cybersecurity teams’ skills