Skip to main content
U.S. flag

An official website of the United States government

Return to Search

UMass settles potential HIPAA violations following malware infection – November 22, 2016

This is an announcement of a HIPAA Settlement with Umass - Amherst regarding potenial HIPAA violations due to a malware infection. The intended audience is health care professionals.

Final

Issued by: Office for Civil Rights (OCR)

Issue Date: July 08, 1905

UMass settles potential HIPAA violations following malware infection – November 22, 2016

The University of Massachusetts Amherst (UMass) has agreed to settle potential violations of the Health Insurance Portability and Accountability Act of 1996 (HIPAA) Privacy and Security Rules. The settlement includes a corrective action plan and a monetary payment of $650,000, which is reflective of the fact that the University operated at a financial loss in 2015.

HHS is committed to making its websites and documents accessible to the widest possible audience, including individuals with disabilities. We are in the process of retroactively making some documents accessible. If you need assistance accessing an accessible version of this document, please reach out to the guidance@hhs.gov.

DISCLAIMER: The contents of this database lack the force and effect of law, except as authorized by law (including Medicare Advantage Rate Announcements and Advance Notices) or as specifically incorporated into a contract. The Department may not cite, use, or rely on any guidance that is not posted on the guidance repository, except to establish historical facts.