Pop Quiz: A company misrepresents what its service can do. An innocent consumer, having relied on their claims, signs up for their service but soon discovers that it cannot do what Sales had assured them it would. Upon discovering the misrepresentation within days of subscribing to the service, the consumer immediately tries to cancel the…
FTC Finalizes Changes to the Health Breach Notification Rule
The Federal Trade Commission today announced it has finalized changes to the Health Breach Notification Rule (HBNR) that will strengthen and modernize the rule by clarifying its applicability to health apps and other similar technologies and expanding the information that covered entities must provide to consumers when notifying them of a breach of their health…
Unsecured Health Genie bucket exposed almost 450,000 files with patient data — Cybernews
It is disgraceful that there are so many huge data leaks involving sensitive personal data, and yet here we are again. Cybernews reports: Health Genie, a healthcare IT solutions provider, left an open instance, exposing patients’ personal details as well as sensitive clinical data. The India-based healthcare solutions provider left an open Amazon S3 bucket,…
LivaNova to notify U.S. patients of October 2023 ransomware incident (1)
A press release from medical technology firm LivaNova PLC indicates that patients of LivaNova U.S. are being notified of a breach first disclosed in November of 2023. An investigation at the time indicated that their systems were first accessed without authorization on or around October 26, 2023, but it was not until April 10, 2024…
Wealthy Taxpayers Alerted to Leaked Data Years After IRS Breach
Erin Schilling reports: Some taxpayers are learning that their data was leaked in the widespread breach by a former IRS contractor that led to the release of former President Donald Trump’s tax returns. Four tax lawyers said they have seen letters from the IRS that went to clients this week and last week notifying them…
Judge Advises Dismissal of CommonSpirit Breach Lawsuit
Marianne Kolbasuk McGee reports: A second federal judge has recommended the dismissal of a second proposed class action lawsuit against Catholic hospital chain CommonSpirit over a 2022 cyberattack and data breach that affected nearly 624,000 people. Both judges said the plaintiffs failed to show how they were harmed by the breach. U.S. Magistrate Judge Susan…