Washington, D.C., January 3, 2025-HHS proposes a sweeping HIPAA update to combat rising cyberattacks. New rules mandate robust security measures, including updated tech inventories and written policies.
In response to the alarming rise in cyberattacks targeting the healthcare sector, the Department of Health and Human Services (HHS) has proposed the first major update to HIPAA rules since 2013. The overhaul aims to fortify cybersecurity measures and safeguard sensitive patient data in the face of increasingly sophisticated hacking and ransomware threats.
According to HHS, reports of large-scale data breaches surged by 102% between 2018 and 2023, affecting a staggering number of individuals. HHS Deputy Secretary Andrea Palm warned:
These attacks endanger patients by exposing vulnerabilities in our healthcare system, disrupting care, and eroding trust.
The proposed updates include critical enhancements, such as mandating compliance with advanced security protocols, requiring annual updates to technology asset inventories and network maps, and eliminating outdated distinctions between “required” and “addressable” implementation specifications.
These measures are designed to provide clear, actionable guidelines for healthcare providers to protect electronic protected health information (ePHI). OCR Director Melanie Fontes Rainer said:
This rule would align cybersecurity safeguards with modern technology and help healthcare organizations meet their responsibility to protect patient data.
A key highlight of the proposal is the requirement for written documentation of all security policies, procedures, and analyses, ensuring accountability and preparedness against potential breaches.
The rule is set to be published in the Federal Register, with a 60-day public comment period. Healthcare providers are urged to act swiftly to understand and adopt these measures.
Other News At VPNRanks
- Steam Deck Rival: ROG Ally X Outshines with Bazzite OS
- Fake Job Offers Install Crypto Miners: CrowdStrike Alert
- Israeli Cybersecurity Firms Target Ivory Coast Elections
- Ivanti Flaw Exploited Globally, CISA Demands Emergency Patch
- UN Aviation Agency Breach Exposes 42,000 Sensitive Records
- Chinese Hackers Breach US Treasury, Exploit Vendor Access
Hey, wait!
Stay informed on the latest privacy updates, cybersecurity insights, and internet freedom news by following VPNRanks news daily! As your primary resource for critical updates in online security, we ensure you’re always in the know. Make VPNRanks your go-to guide for safeguarding your digital life!