Paubox blog: HIPAA compliant email made easy

Paubox Weekly: OCR and FTC publicly release warning letters regarding pixels

Written by Dean Levitt | September 08, 2023

Hello world,

Today’s Paubox Weekly is 466 words - a 2 minute read.

Want to get this type of content delivered to your inbox every Friday? Subscribe to Paubox Weekly. 

 

1. OCR and FTC publicly release warning letter regarding pixels

Recently, the OCR and FTC publicly released the letter that was sent to over 100 healthcare and telehealth organizations.

In the know: This spring, a report revealed that 98.6% of hospitals use pixel tracking through third parties, including Meta, which may put patient privacy at risk.

Why it matters: The letter highlights that using the Meta pixel and Google Analytics could infringe on privacy protections.

"Serious privacy and security risks"

 

 

Did you know?

You can earn $250 for every organization you send our way. Here's how.

 

 

2. Microsoft reveals the sequence of events that led to a massive hacking event

In July, Microsoft disclosed they had been breached by a Chinese hacking group. After an investigation, they now know the mistakes that allowed it to occur.

What's new: According to Microsoft’s investigation, there were a number of events that allowed the attack to take place. The first was allowing an authentication key to be stolen in the first place.

Multiple failures allowed this to occur

 

 

HIPAA compliant online forms

Securely collect information and files from patients. Free with your Paubox Email Suite account. How it works.

 

 

3. Can healthcare professionals use online tracking while remaining HIPAA compliant?

Through online tracking, organizations can gain valuable insights into patient behavior and preferences

Why it matters: HHS emphasizes that any collection or disclosure of PHI through these technologies must adhere to HIPAA regulations.

How to ensure compliance using online tracking

 

 

4. The American Telemedicine Association releases a statement on consumer health data

ATA, a leading organization advocating for telehealth providers, released a statement on ensuring telehealth programs meet privacy and security standards.

Why it matters: The ATA has been meeting with national and state officials to discuss privacy in virtual care settings.

The primary principles for data privacy in telehealth

 

 

Community links

  • The HIPAA Privacy Rule's preemption of state law. Link
  • Can you personalize a healthcare email?  Link
  • The NIST Cybersecurity Framework and the HIPAA Security Rule crosswalk. Link
  • The basic elements of a HIPAA compliant breach notification. Link
  • How HIPAA and OSHA work together. Link

 

Good reads from around the web

  • Apple zero-click iMessage exploit used to infect iPhones with spyware. Link
  • Can virtual nursing combined with computer vision AI boost care quality? Link
  • Cats are obsessed with tuna due to their special taste buds. Link
  • Hacking democracy: The cyberattacks that shaped global politics. Link
  • Three CISOs share how to run an effective SOC. Link