OCR Did the Math, 200K Patients Exposed Equals a $100K Fine

Boo! On Halloween, HHS’ Office for Civil Rights (OCR) announced a settlement with a Massachusetts business associate (BA) for $100,000. This is the first ransomware agreement OCR has reached. The Attack and the Settlement After filing a breach report with OCR in 2019 reporting a ransomware attack that compromised the protected health information (PHI) of 206,695 patients, the OCR launched an investigation [...]