Cybersecurity, Privacy, & AI

Trending Now
What Cross-Border M&A Teaches About the Limits of Legal AI • Unpacking the Great American AI Act • Illinois Department of Human Rights Seeks Public Comment on Draft AI Employment Regulations • CISA Close to Issuing New Cyber AI Directive • Pentagon’s Cyber Defense Command Drafting Plan to Defend Critical Infrastructure

Sen. Warner Asks HHS for Answers on Unsecured Medical Images

Senator Mark Warner (D-VA) is scrutinizing the response from the Department of Health and Human Services’ Office for Civil Rights to the exposure of millions of patients’ medical image files, including some held by a U.S. company.

In a letter to OCR Director Roger Severino, Warner writes that he wants to determine how “an enormous oversight” in the HIPAA-enforcement agency “has allowed medical companies to leave insecure ports open to the internet and accessed repeatedly by [researchers via a] German IP address.”

In September, ProPublica and German broadcaster Bayerischer Rundfunk identified 187 servers hosting medical imaging in the U.S. that were “unprotected by passwords or basic security precautions.” The exposed records included medical images and health data belonging to about 5 million Americans – plus “millions more around the world,” the report said.

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–Saturday — Subscribe here.