HIPAA Business Associate Settles with HHS OCR Following Alleged PHI Breach to the Dark Web

Start
On March 5, 2026, the U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) announced a settlement with MMG Fusion, LLC (MMG). MMG is a Maryland software company that was the subject of a complaint filed with OCR in January 2023 based upon an unreported HIPAA security incident. Although MMG, a HIPAA business associate, admitted no wrongdoing as part of the OCR settlement, OCR noted that MMG had potentially violated provisions in the HIPAA Privacy, Security, and Breach…
By: Saul Ewing LLP
Previous Story

CalPrivacy Goes to the Board with Digital Advertising-Focused Enforcement

Next Story

Supreme Court Denies Review in AI Authorship Case