Hospitals Face Increased Risk of Data Breaches
|
By HospiMedica International staff writers Posted on 26 Apr 2017 |
A new study suggests that as health providers adopt health information technology, they increasingly suffer from data breaches.
Researchers at Michigan State University, Ball State University, and Johns Hopkins University conducted a retrospective data analysis of data breaches reported to the U.S. Department of Health and Human Services between October 2009 and December 2016. By law, U.S. hospitals covered by the Health Insurance Portability and Accountability Act (HIPPA), must notify the HHS of any breach affecting 500 or more individuals within 60 days of the discovery of the breach.
The results revealed that during the study period, healthcare providers reported 1,225 of the 1,798 recorded breaches, while business associates, health plans, and healthcare clearinghouses reported the remaining 573 data breaches. Of these, 257 breaches were reported by 216 hospitals; importantly, 33 hospitals experienced more than one breach, many of them large, major teaching hospitals, such as UC Davis Medical Center (CA, USA) and Henry Ford Hospital (Detroit, MI, USA). The study was published on April 3, 2017, in JAMA Internal Medicine.
“This research reinforces the critical trade-off patient’s face: healthcare systems having access to information they need, versus a hacker planning to spend your savings at Best Buy,” said lead author Xuefeng Jiang, PhD, of MSU, and colleagues. “While the law requires health care professionals and systems to cross-share patient data, the more people who can access data, the less secure it is.”
A data breach is defined as a security incident in which sensitive, protected, or confidential data is copied, transmitted, viewed, stolen or used by an individual unauthorized to do so. Data breaches may involve financial information such as credit card or bank details, personal health information, personally identifiable information, trade secrets of corporations, or intellectual property.
Researchers at Michigan State University, Ball State University, and Johns Hopkins University conducted a retrospective data analysis of data breaches reported to the U.S. Department of Health and Human Services between October 2009 and December 2016. By law, U.S. hospitals covered by the Health Insurance Portability and Accountability Act (HIPPA), must notify the HHS of any breach affecting 500 or more individuals within 60 days of the discovery of the breach.
The results revealed that during the study period, healthcare providers reported 1,225 of the 1,798 recorded breaches, while business associates, health plans, and healthcare clearinghouses reported the remaining 573 data breaches. Of these, 257 breaches were reported by 216 hospitals; importantly, 33 hospitals experienced more than one breach, many of them large, major teaching hospitals, such as UC Davis Medical Center (CA, USA) and Henry Ford Hospital (Detroit, MI, USA). The study was published on April 3, 2017, in JAMA Internal Medicine.
“This research reinforces the critical trade-off patient’s face: healthcare systems having access to information they need, versus a hacker planning to spend your savings at Best Buy,” said lead author Xuefeng Jiang, PhD, of MSU, and colleagues. “While the law requires health care professionals and systems to cross-share patient data, the more people who can access data, the less secure it is.”
A data breach is defined as a security incident in which sensitive, protected, or confidential data is copied, transmitted, viewed, stolen or used by an individual unauthorized to do so. Data breaches may involve financial information such as credit card or bank details, personal health information, personally identifiable information, trade secrets of corporations, or intellectual property.
Latest Health IT News
- Voice-Driven AI System Enables Structured GI Procedure Documentation
- EMR-Based Tool Predicts Graft Failure After Kidney Transplant
- Printable Molecule-Selective Nanoparticles Enable Mass Production of Wearable Biosensors
- Smartwatches Could Detect Congestive Heart Failure
- Versatile Smart Patch Combines Health Monitoring and Drug Delivery
Channels
Artificial Intelligence
view channelAI Analysis of Pericardial Fat Refines Long-Term Heart Disease Risk
Accurately identifying long-term cardiovascular disease risk in asymptomatic adults remains challenging for clinicians. Missed or underestimated risk delays preventive therapy and increases the chance... Read more
Machine Learning Approach Enhances Liver Cancer Risk Stratification
Hepatocellular carcinoma, the most common form of primary liver cancer, is often detected late despite targeted surveillance programs. Current screening guidelines emphasize patients with known cirrhosis,... Read moreCritical Care
view channelHeat-Activated Skin Patch Targets Melanoma Lesions
Melanoma, a lethal skin cancer, is usually managed with surgical excision. Surgery can be invasive and may not be suitable for all lesions, driving interest in noninvasive therapies. Researchers have now... Read more
Automated Dispensing System Enhances Medication Access and Efficiency
Medication availability and secure dispensing remain daily challenges across inpatient units and pharmacies. Manual retrieval and inventory gaps can disrupt care and consume clinician time.... Read moreSurgical Techniques
view channel
Endoscope Enables Fallopian Tube Imaging and Cell Collection for Ovarian Cancer Surveillance
Early detection of ovarian cancer remains challenging because symptoms are nonspecific and available screening tests often fail to identify disease at a curable stage. Many high‑grade serous carcinomas... Read more
New Modular Stem System Improves Fixation and Workflow in Total Ankle Replacement
Total ankle replacement demands stable fixation, preservation of bone stock, and consistent intraoperative efficiency to support durable outcomes. Surgeons often weigh exposure and soft-tissue disruption... Read more
Implantable Brain-Computer Interface Supports Stroke Recovery and Assistive Function
Stroke leaves many survivors with chronic motor deficits that limit independence, and cognitive decline is a growing concern in aging populations. Stroke is a leading cause of long-term disability in the... Read more
Patient-Specific Cardiac Digital Twin Guides Ventricular Tachycardia Ablation
Catheter ablation for ventricular tachycardia after myocardial infarction is lengthy, technically demanding, and prone to recurrence. Repeat procedures add scar burden and keep many patients on antiarrhythmic drugs.... Read morePatient Care
view channel
Wearable Sleep Data Predict Adherence to Pulmonary Rehabilitation
Chronic obstructive pulmonary disease (COPD) is a long-term lung disorder that makes breathing difficult and often disturbs sleep, reducing energy for daily activities. Limited engagement in pulmonary... Read more
Revolutionary Automatic IV-Line Flushing Device to Enhance Infusion Care
More than 80% of in-hospital patients receive intravenous (IV) therapy. Every dose of IV medicine delivered in a small volume (<250 mL) infusion bag should be followed by subsequent flushing to ensure... Read moreBusiness
view channel
New Partnership Expands Access to Predictive Tool for Patient Monitoring
Spacelabs Healthcare has signed an agreement with DEPTH Health, Inc. to make the Rothman Index available to hospitals and health systems through DEPTH’s Real-Time Advisor for Clinical Expert Routing (RACER)... Read more







