In October, the health system discovered that two employees had fallen victim to a phishing attack. Hospital officials took steps to secure the email accounts. Upon investigation, Sinai Health System said there is no evidence that patient information was removed from the email accounts.
Patient data that may have been exposed included names, addresses, dates of birth, Social Security numbers, health information or health insurance information.
Along with securing the email accounts, Sinai Health System had employees undergo additional cybersecurity training and enhanced its email filtering protocols. There is no evidence that patient information has been misused.
More articles on cybersecurity:
Florida clinic to pay $85K for violating HIPAA records access rule
Wyoming hospitals hit by cyberattacks almost daily, state hospital association says
4 things to know about Zeppelin, a ransomware targeting healthcare organizations
At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.