The HHS Office for Civil Rights (OCR) has reached a settlement with Health Fitness Corporation over potential HIPAA risk analysis gaps. OCR claimed the healthcare company failed to conduct a thorough risk analysis, leaving electronic protected health information (ePHI) exposed to web crawlers due to a software misconfiguration since 2015. This initiates the fifth settlement under OCR’s risk analysis initiative.

New Trustwave research finds patient lives at risk in healthcare with cybersecurity vulnerabilities
Cybersecurity firm Trustwave has published a series of reports detailing the increasing digital threats facing the healthcare sector. The transition of the industry towards digital,