The U.S. Department of Health and Human Services settled with Saint Joseph’s Medical Center in Yonkers for unlawfully releasing COVID-19 patients’ health information to the media. The hospital must pay $80,000, implement a corrective action plan, and train staff on HIPAA compliance. OCR has been cracking down on PHI breaches, with large fines imposed on violators. Healthcare providers must prioritize patient privacy and follow the law.
Windows Vulnerability in COM Objects Let Attackers Trigger Remote Command Execution
James Forshaw from Google Project Zero revealed a critical Windows vulnerability in accessing COM objects via the IDispatch interface. This flaw allows attackers to exploit