The Health and Human Services (HHS) Office for Civil Rights (OCR) is reviewing 4,745 public comments made in response to proposed updates to the HIPAA Security Rule. The changes include updating definitions, changing regulations and requiring written documentation of policies. However, it has been criticized over cost and implementation times. The OCR is also renewing its HIPAA audit program, contacting 50 organizations to participate in 2024-2025 audits to assess compliance and identify vulnerabilities.

What are business logic vulnerabilities?
Business logic vulnerabilities in software allow attackers to exploit flaws in design, enabling them to circumvent security measures and manipulate pricing, authentication, and other key