Health IT, hacking, and cybersecurity: national trends in data breaches of protected health information

被引:41
作者
Ronquillo, Jay G. [1 ]
Winterholler, J. Erik [1 ]
Cwikla, Kamil [1 ]
Szymanski, Raphael [1 ]
Levy, Christopher [1 ]
机构
[1] Western Michigan Univ, Homer Stryker MD Sch Med, 1000 Oakland Dr, Kalamazoo, MI 49008 USA
关键词
cybersecurity; ransomware; electronic health records; clinical informatics; hacking;
D O I
10.1093/jamiaopen/ooy019
中图分类号
R19 [保健组织与事业(卫生事业管理)];
学科分类号
摘要
Objective: The rapid adoption of health information technology (IT) coupled with growing reports of ransom-ware, and hacking has made cybersecurity a priority in health care. This study leverages federal data in order to better understand current cybersecurity threats in the context of health IT. Materials and Methods: Retrospective observational study of all available reported data breaches in the United States from 2013 to 2017, downloaded from a publicly available federal regulatory database. Results: There were 1512 data breaches affecting 154 415 257 patient records from a heterogeneous distribution of covered entities (P<.001). There were 128 electronic medical record-related breaches of 4 867 920 patient records, while 363 hacking incidents affected 130 702 378 records. Discussion and Conclusion: Despite making up less than 25% of all breaches, hacking was responsible for nearly 85% of all affected patient records. As medicine becomes increasingly interconnected and informatics-driven, significant improvements to cybersecurity must be made so our health IT infrastructure is simultaneously effective, safe, and secure.
引用
收藏
页码:15 / 19
页数:5
相关论文
共 22 条
  • [1] Anthony ES, 2017, HEALTHITBUZZ
  • [2] Hospital Risk of Data Breaches
    Bai, Ge
    Jiang, John
    Flasher, Renee
    [J]. JAMA INTERNAL MEDICINE, 2017, 177 (06) : 878 - 880
  • [3] Keeping Personal Health Information Safe The Importance of Good Data Hygiene
    Blumenthal, David
    McGraw, Deven
    [J]. JAMA-JOURNAL OF THE AMERICAN MEDICAL ASSOCIATION, 2015, 313 (14): : 1424 - 1424
  • [4] The double-edged sword of electronic health records: implications for patient disclosure
    Campos-Castillo, Celeste
    Anthony, Denise L.
    [J]. JOURNAL OF THE AMERICAN MEDICAL INFORMATICS ASSOCIATION, 2015, 22 (E1) : E130 - E140
  • [5] Implementing Machine Learning in Health Care - Addressing Ethical Challenges
    Char, Danton S.
    Shah, Nigam H.
    Magnus, David
    [J]. NEW ENGLAND JOURNAL OF MEDICINE, 2018, 378 (11) : 981 - 983
  • [6] Clark Lisa W, 2013, J Med Pract Manage, V29, P56
  • [7] Cyberattack on Britain's National Health Service - A Wake-up Call for Modern Medicine
    Clarke, Rachel
    Youngstein, Taryn
    [J]. NEW ENGLAND JOURNAL OF MEDICINE, 2017, 377 (05) : 409 - 411
  • [8] Your Money or Your Patient's Life? Ransomware and Electronic Health Records
    Cohen, I. Glenn
    Hoffman, Sharona
    Adashi, Eli Y.
    [J]. ANNALS OF INTERNAL MEDICINE, 2017, 167 (08) : 587 - +
  • [9] Cybersecurity-A Serious Patient Care Concern
    Jarrett, Mark P.
    [J]. JAMA-JOURNAL OF THE AMERICAN MEDICAL ASSOCIATION, 2017, 318 (14): : 1319 - 1320
  • [10] Koppel R, 2017, LESSONS 100 NATION R