By Kyle Brasseur2023-12-08T16:48:00
Louisiana-based Lafourche Medical Group agreed to pay $480,000 as part of the first phishing attack-related settlement the Department of Health and Human Services’ Office for Civil Rights (HHS OCR) has reached under the Health Insurance Portability and Accountability Act (HIPAA).
Lafourche additionally consented to be monitored by the OCR for a period of two years, as well as agreeing to a corrective action plan, the agency announced Thursday.
In May 2021, Lafourche reported to the HHS it was breached through a phishing attack that occurred two months prior. The attack affected the electronic protected health information of nearly 35,000 individuals, the agency’s investigation found.
2024-03-14T19:45:00Z By Adrianne Appel
Change Healthcare, a health payment processor hit by a crippling cyberattack in February, is under investigation by the Department of Health and Human Services’ Office for Civil Rights.
2024-02-07T21:51:00Z By Adrianne Appel
Montefiore Medical Center agreed to pay $4.75 million to settle allegations by the Department of Health and Human Services’ Office for Civil Rights that failures by the New York City nonprofit facility allowed an employee to steal and sell patient information for six months.
2023-12-07T18:34:00Z By Adrianne Appel
Hospitals can soon expect to see new draft cybersecurity regulations and benchmarking goals, according to the Department of Health and Human Services.
2025-08-20T21:22:00Z By Adrianne Appel
CVS’s Caremark division knowingly overcharged Medicare for prescription drugs and must pay nearly $290 million, a Pennsylvania federal judge has ordered.
2025-08-18T14:12:00Z By Oscar Gonzalez
The owner of a water machine vending company and a portfolio manager were allegedly behind a Ponzi-like scheme that raised more than $275 million, according to the U.S. Securities and Exchange Commission.
2025-08-15T18:59:00Z By Aly McDevitt
As regulators shift toward rewarding transparency, self-regulation and self-reporting, the way PFS Investments handled a longstanding problem serves as an example of how proactive remediation can turn a costly compliance error into a manageable regulatory outcome.
Site powered by Webvision Cloud