Three major U.S. healthcare providers agree to class-action settlements to resolve significant data breach lawsuits

Three prominent U.S. healthcare providers have agreed to settle class-action lawsuits following significant data breaches that compromised patient information. Hypertension Nephrology Associates (Pennsylvania) agreed to a $625,000 settlement after a ransomware attack exposed the data of nearly 40,000 patients. Similarly, Asheville Arthritis and Osteoporosis Center (North Carolina) established a $500,000 settlement fund to resolve claims related to a breach affecting over 58,000 individuals. Intermountain Planned Parenthood (Montana) also reached a settlement for a breach involving nearly 57,000 patients, though the total fund amount varies based on claims. In all three cases, the lawsuits alleged negligence in failing to implement reasonable security protections and delays in notifying victims. The settlements allow affected patients to claim reimbursement for out-of-pocket losses, lost time, and credit monitoring services. These agreements highlight the growing legal and financial accountability healthcare organizations face when they fail to safeguard Protected Health Information (PHI) against cyberattacks, emphasizing that the cost of a breach extends far beyond immediate technical remediation.

Read the original article at: https://www.hipaajournal.com/class-action-data-breach-settlements-agreed-with-three-healthcare-providers/

Follow us on Instagram, Twitter, and Facebook to stay up to date with what's new in healthcare all around the world.

 

Comments

Popular posts from this blog

Cybersecurity in Healthcare insights: 27th Nov- 3rd Dec 2025

Cybersecurity in Healthcare Insights: 20th Nov- 26th Nov 2025

Healthcare vendor breach: 1.2 million files alleged stolen—patients exposed