Healthcare providers aren’t the only ones suffering accidental disclosures of HIPAA-covered data. The Centers for Medicare & Medicaid Services itself is fessing up to a breach — although it took place at a contractor’s.
Medicare contractor Maximus Federal Services Inc. experienced a breach with its MOVEit file transfer program from Progress Software, CMS reveals in a release. CMS estimates the MOVEit breach impacted about 612,000 current Medicare beneficiaries. “CMS and Maximus are sending letters to individuals who may have been impacted notifying them of the breach, and explaining actions being taken in response,” the agency explains. For benes whose MBI was impacted, “a new Medicare card with a new number will be issued to you,” CMS says.