DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Peel: Congress should stop pandering to health data miners

Posted on March 6, 2008October 24, 2024 by Dissent

In today’s Government Health IT Notebook, there is a statement by Deborah Peel, M.D., Founder and Chair of Patient Privacy Rights:

The story last week on e-prescribing [“$3 billion annual savings estimated for Medicare e-prescribing,” GovHealthITcom, March 4] does not mention the elephant in the room: that every prescription in the nation has been data-mined and sold for over a decade to drug companies and employers without the legal consent of Americans.

The ‘consents’ on which this theft is based are illegal and coerced by health plans when you sign up annually for a health plan.

No e-prescribing legislation should pass unless it ends the daily theft of the nation’s electronic prescription records and restores Americans’ rights to health information privacy. My organization, Patient Privacy Rights, and our allies will oppose this bill unless it is fixed.

Today most Americans do not even know about this privacy disaster. Patient Privacy Rights is working to alert the public about this massive violation of their right to privacy.

Last Friday at a congressional briefing sponsored by the bipartisan Alliance for Health Reform and Divided We Fall, I called for congressional investigations into the secret corporate world that data mines our sensitive personal information.

The data mining industry makes billions in profits every year and not one dime goes to help a single sick person. Our healthcare system is so broken that the greatest profits in healthcare are made by corporations that steal our sensitive health records, not by the health professionals who actually treat and care for us when we are sick.
One prescription data mining corporation reported revenues in 2006 of $2 billion. One of the nation’s largest insurers sells the longitudinal claims and health data of all 79 million of its enrollees to large employers to lower their costs.

How on earth could they have obtained all that data without informed consent? All the data they sell can easily be re-identified with three bits of information, zip code, sex, and age. It is impossible to scrub the data in health records so clean that re-identification is impossible. Health data is so rich that it contains far too much detail to ever be safe.

Read More – GHIT


Related:

  • JFL Lost Up to $800,000 Weekly After Cyberattack, CEO Says No Patient or Staff Data Was Compromised
  • Massachusetts hospitals Heywood, Athol say outage was a cybersecurity incident
  • Heritage Provider Network $49.99M Class Action Settlement
  • Integris Health Agrees to $30 Million Settlement Over 2023 Data Breach
  • They were victims of a massive data breach in 2009. Interior Health denied it for a decade.
  • Watsonville Community Hospital had a data breach -- or two. It would be helpful to know which.
Category: Health Data

Post navigation

← Dialysis patients’ SSN and health info on laptop stolen from DaVita employee’s car
Open records on mentally ill: Cops →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Threat actors have reportedly launched yet another campaign involving an application connected to Salesforce
  • Russian hackers target IVF clinics across UK used by thousands of couples
  • US, allies sanction Russian bulletproof hosting services for ransomware support
  • Researchers claim ‘largest leak ever’ after uncovering WhatsApp enumeration flaw
  • Large medical lab in South Africa suffers multiple data breaches
  • Report released on PowerSchool cyber attack
  • Sue The Hackers – Google Sues Over Phishing as a Service
  • Princeton University Data Breach Impacts Alumni, Students, Employees
  • Eurofiber admits crooks swiped data from French unit after cyberattack
  • Five major changes to the regulation of cybersecurity in the UK under the Cyber Security and Resilience Bill

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Closing the Privacy Gap: HIPRA Targets Health Apps and Wearables
  • Researchers claim ‘largest leak ever’ after uncovering WhatsApp enumeration flaw
  • CIPL Publishes Discussion Paper Comparing U.S. State Privacy Law Definitions of Personal Data and Sensitive Data
  • India’s Digital Personal Data Protection Act 2023 brought into force
  • Five major changes to the regulation of cybersecurity in the UK under the Cyber Security and Resilience Bill

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.