Breach feed · live
Sunshine Health · FL · 41,569 affected · hacking/it incidentHudson Valley Medical Billing & Credentialing, LLC · NY · 5,459 affected · hacking/it incidentHP Dental · NY · 548 affected · hacking/it incidentPremera Blue Cross · WI · 11,000,000 affected · hacking/it incidentExcellus BlueCross BlueShield · WI · 10,000,000 affected · hacking/it incidentDentaQuest, LLC · WA · 91,700 affected · hackingPrevea Clinic, Inc. · WI · 350 affected · unauthorized accessU.S. Office of Personnel Management (OPM) · IN · 21,500,000 affected · cyberattackMediCare Systems Inc. · 1,000,000 affected · breach
Sun, Aug 2, 2026
Vol. 1 · No. 31Sunday, August 2, 2026Edition: National

HIPAA Pulse.

Breach intelligence · HIPAA news · Prevention
From Patient Protect
Breach

HHS OCR Settles Ransomware Investigation of OSF Healthcare System and Affiliated Covered Entities

In June 2021, DataBreaches reported on a ransomware attack affecting OSF Healthcare by a little-known gang called Xing Team. Our reporting noted OSF's lack or response to inquiries and lack of timely notification. When OSF issued a statement in October, DataBreaches reported on that, too, commenting that we did not find their incident response timely... Source

Breach tracker · Last 30 days

HHS OCR · State AG · OCR Enforcement · FTC · CISA · Updated nightly
Incidents reported
173
Last 30 days, all sources
Individuals affected
8051.09M
Cumulative across the archive
Confirmed breaches
56%
3,388 of 6,014 incidents
Total in archive
6,014
All-time tracked
Open the full tracker →
Security Rule 2026 · Ongoing coverage

The HIPAA Security Rule update is still under OCR review. We’re tracking every provision change, comment letter, and enforcement signal until it lands.

Comprehensive draft-vs-final redline analysis, sector-specific readiness assessments, and a comment-letter database covering every public submission. Free for any practice that needs it.

Active
Rule still pending finalization

Pattern analysis

All patterns →
Stay informed

The same team behind HIPAA Pulse runs an every-other-Wednesday briefing on the breaches, regulatory moves, and analysis worth your time.

HIPAA Pulse is published by Patient Protect. The newsletter comes from the same place — which means you’ll see the occasional update about the Patient Protect platform. We try to keep that light. If you want only the editorial content, the RSS feed has no product material.

Every other Wednesday · Free · Unsubscribe anytime

About HIPAA Pulse

HIPAA Pulse is a publication from Patient Protect, the HIPAA compliance platform built for independent healthcare practices. We cover breaches, OCR enforcement, regulatory developments, and tactical guidance for the people who actually have to comply with the rule. The breach data, regulatory tracking, and pattern analysis are useful regardless of what software you use.