DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Small Milwaukee publisher sues to stop misrouted medical faxes putting him at risk

Posted on February 7, 2017 by Dissent

Jim Stingl reports:

If you fax private medical information to a health management company in Ohio, you don’t expect it to arrive instead at a small publishing firm in Milwaukee.

Well, surprise! That’s exactly what has been happening since the summer of 2015.

Craig Berg, owner of Moose Moss Press, has tried to make it stop, but the wayward faxes just keep on coming.

Okay, but his lawyer’s claims that others’ fax errors could cost him strike me as just plain wrong:

It might be comical if it weren’t for the penalties Berg could face for possessing patient health records. There are HIPAA rules about that, and Wisconsin law says you can be nailed for $25,000 per offense.

“If you multiply that by the outrageous number of people who keep faxing him this information, I mean, my God, it could ruin him,” said Berg’s lawyer, Thomas Vaitys.

The attorney recently filed a federal lawsuit in Milwaukee to stop the flurry of faxes that are supposed to be going to EnvisionRxOptions, which calls itself a health care and pharmacy benefit management company headquartered in Twinsburg, Ohio.

Look, the entities that are misdirecting faxes could face fines, theoretically, but being the recipient of unrequested faxes does not mean that HHS can fine a non-HIPAA-covered entity. That strikes me as just so much hogwash.

Perhaps Berg should just start filing online complaints with HHS against the entities that are sending him faxes with PHI. And add a note to the complaint inquiring whether EnvisionRxOptions has sent an alert to ALL of its clients to correct their records on fax numbers, lest THEY fall afoul of HIPAA.

Read more on Milwaukee-Wisconsin Journal Sentinel.


Related:

  • Two U.K. teenagers appear in court over Transport of London cyber attack
  • ModMed revealed they were victims of a cyberattack in July. Then some data showed up for sale.
  • JFL Lost Up to $800,000 Weekly After Cyberattack, CEO Says No Patient or Staff Data Was Compromised
  • Massachusetts hospitals Heywood, Athol say outage was a cybersecurity incident
  • Heritage Provider Network $49.99M Class Action Settlement
  • Integris Health Agrees to $30 Million Settlement Over 2023 Data Breach
Category: ExposureHealth Data

Post navigation

← Isis-linked hackers attack NHS websites to show gruesome images from Syrian civil war
Five months after learning of problem, Michigan cancer treatment provider notifies 22,000 patients →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Washington Post hack exposes personal data of John Bolton, almost 10,000 others
  • Draft UK Cyber Security and Resilience Bill Enters UK Parliament
  • Suspected Russian hacker reportedly detained in Thailand, faces possible US extradition
  • Did you hear the one about the ransom victim who made a ransom installment payment after they were told that it wouldn’t be accepted?
  • District of Massachusetts Allows Higher-Ed Student Data Breach Claims to Survive
  • End of the game for cybercrime infrastructure: 1025 servers taken down
  • Doctor Alliance Data Breach: 353GB of Patient Files Allegedly Compromised, Ransom Demanded
  • St. Thomas Brushed Off Red Flags Before Dark-Web Data Dump Rocks Houston
  • A Wiltshire police breach posed possible safety concerns for violent crime victims as well as prison officers
  • Amendment 13 is gamechanger on data security enforcement in Israel

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Maryland Privacy Crackdown Raises Bar for Disclosure Compliance
  • Lawmakers Warn Governors About Sharing Drivers’ Data with Federal Government
  • As shoplifting surges, British retailers roll out ‘invasive’ facial recognition tools
  • Data broker Kochava agrees to change business practices to settle lawsuit
  • Amendment 13 is gamechanger on data security enforcement in Israel

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.