Aultman Health substructure Notifying Patients of Insider-Wrongdoing The Ohio understructure is notifying approximately 7,000 patients that a former employee accessed their records without business need. HOYA Optical Labs of America Notifying Patients of Ransomware Incident as first reported by HealthITSecurity, the Japanese-headquartered firm notified 3,259 U.S. patients of a ransomware incident. The incident occurred in march and was discovered in April. To their credit, they informed those affected that the stolen data had been published by the terror actors. Implementing the HIPAA Security Rule: telephone for Comments Extended to July 9th The National Institute of Standards and Technology (NIST) has extended the due date to July 9, 2021, for providing comments on NIST Special Publication (SP) 800-66 revisal 1, An Introductory Resource guide for Implementing the Health indemnity Portability and answerability routine (HIPAA) security Rule (Resource Guide). See the call for comments for more details and instructions for submitting comments. aid N attention indemnity fellowship of north Carolina, Inc. d/b/a HealthTeam advantage (HealthTeam Advantage) Notifies Members of Beacon Health Solutions transgress DataBreaches.net had first noted the beacon Health Solutions breach in a November, 2020 report after it appeared on REvil’s dedicated leak site in October. We later learned that lighthouse notified HHS on December 11, 2020, but their report claimed 500 patients impacted, which seemed significantly less than what had been publicly dumped by threat actors. In April, BHS issued a press waiver that this site reported and criticized for claiming that they first discovered the breach on january 29. This week, upkeep N care Insurance company of North Carolina, Inc. d/b/a HealthTeam advantage (HealthTeam Advantage) disclosed that they were impacted by the breach. Their notice stated, in part, “Prior to the issue being discovered, certain penis information may have been compromised.” “May have been?” lighthouse Health Solutions doesn’t know for sure? Two More Entities Disclose impact from Elekta breach health team reward wasn’t the only covered entity first disclosing this week that they had been impacted by a business associate breach months ago. Renown health disclosed that they had been impacted by the Elekta breach first mentioned on this site in April. The Swedish radiology software provider incident impacted a number of covered entities, and Renown Health wasn’t the only entity to issue a notification this month — cancer Centers of Southwest oklahoma also issued a notification. twin Med LLC Notifies Employees of breach Sometimes it’s the employees and not the patients… duplicate Med LLC in California is notifying 366 employees of unauthorized access to some of their information in its systems between sep 28, 2020 and october 4, 2020. CaptureRx Notifies More Impacted Entities and Patients, Updates Numbers Again DataBreaches.net has continued to running reports stemming from a breach of NEC Networks LLC dba CaptureRx, a special pharmacy benefits provider. in May, CaptureRx had indicated that 1,919,938 multitude had been impacted. in an updated filng this week, however, they reported the number now stands at 2,420,141. Send in the Lawyers or Regulators Scripps health faces four class-action suits citing ransomware records breach Two such proceedings were filed in federal court on monday and get been added to the two cases already in say court books since early June. Everything makes essentially the same basic claim: Scripps failed to meet its obligations to protect patient information, exposing patients to potential fallouts from personal info theft to medical fraud. Colonial pipeline Sued for gas Crisis From Ransomware attack Colonial pipeline Co. was sued by a accelerator post seeking to represent thousands more over the ransomware attack in May that paralyzed the U.S. East Coasts flow of gasoline, diesel and squirt fuel. EZ Mart 1 LLC, a two-pump station in Wilmington, North Carolina, buys its fuel from a distributor supplied by Colonial, according to a complaint filed Monday in federal court in Georgia. sec investigating Companies Handling of SolarWinds tone-beginning The sec is seeking to check whether public-company victims made appropriate disclosures to investors, if there was suspicious trading related to the cyberattack and whether private data was compromised.