惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

酷 壳 – CoolShell
酷 壳 – CoolShell
G
Google Developers Blog
L
LangChain Blog
Y
Y Combinator Blog
Vercel News
Vercel News
WordPress大学
WordPress大学
大猫的无限游戏
大猫的无限游戏
博客园 - Franky
V
Visual Studio Blog
小众软件
小众软件
月光博客
月光博客
A
About on SuperTechFans
H
Hackread – Cybersecurity News, Data Breaches, AI and More
T
The Blog of Author Tim Ferriss
有赞技术团队
有赞技术团队
M
MIT News - Artificial intelligence
阮一峰的网络日志
阮一峰的网络日志
Last Week in AI
Last Week in AI
博客园 - 【当耐特】
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
MongoDB | Blog
MongoDB | Blog
Jina AI
Jina AI
美团技术团队
量子位

GovInfoSecurity.com RSS Syndication

On Demand | Regulation Didn’t Change, Your Identity Landscape Did On Demand | Weaving Agentic AI into the SOC: A Practical Playbook for Operationalizing and Scaling Autonomy Why Periodic Pentesting Can’t Keep Up And What Security Leaders Are Doing Instead Claude Mythos 5 Can Build Exploits But Can't Power Campaigns AI Is Reshaping Cybersecurity Training Priorities Health Cyberthreat Sharing Is Advancing But Gaps Persist Are Small Models Closing the Gap on Frontier AI Cyber Tools? Government info security news, training, education Government info security news, training, education Government info security news, training, education Government info security news, training, education Beyond the Inbox: Defending Against AI-Enabled Social Engineering Webinar | 6 Layers Standing Between Your Enterprise and AI Risk Webinar | 6 Layers Standing Between Your Enterprise and AI Risk Webinar | Securing the Agentic Enterprise: An Integrated Policy Framework for Enterprise AI Security How AI Governance Protects Patient Care and Sensitive Data Why Hospitals Must Rethink Cyber Resilience Why Election Systems Are Now a Persistent Cyber Target Anthropic Submits Pre-IPO SEC Filing, Leads Market Cap Fight AI Agents Are the New Insiders Demystifying Claude: Signal vs. Speculation German Court: Google Liable for AI Summaries DOJ, FBI Seize 13 Domains in Chinese Recruitment Op A Security Gets $37M to Thwart Weaponized AI With Automation Breach Roundup: CISA Says Agencies Should 'Patch Smarter' Google Sues Chinese Phishing Service Over Gemini Abuse Policy as Code: From Documents to Machine Intelligence Anthropic Limits on OT Access to Mythos Draw Criticism Ozempic Drug Maker Loses Clinical Trial Data in Hack
The Privacy Risks of Embedded, Shadow AI in Healthcare
Marianne Kolbasuk McGee · 2026-06-11 · via GovInfoSecurity.com RSS Syndication

Artificial intelligence stealthily embedded into newer editions of software and other technology tools is a risk on par with shadow AI, said regulatory attorney Elizabeth Hodge with the law firm Akerman LLP.

"There are applications, software, tools or services that vendors are providing that historically did not incorporate AI, but now they have," Hodge said. Sometimes the vendors will inform the customers, but sometimes they don't, she said.

So it's important to ask and scrutinize where vendors might be incorporating AI into their products, she said.

"Consider doing a risk analysis of which of those applications, products, services, etc. potentially use the most data, or would pose the greatest risk to the organization if data was used improperly," she said. "Focus on those vendors - reach out to them, have your information security team or contracts team review periodically your vendors," she said.

"Have them answer questions about their use of AI, so you have a better understanding of the risk."

In the interview (see audio link below photo), Hodge also discussed:

  • Risk considerations involving shadow AI;
  • Privacy issues involving the use of de-identified patient data in AI tools - including the risk of re-identification;
  • HIPAA and other reportable data breach considerations involving AI.

Hodge is a partner in law firm Akerman's healthcare and data privacy practices. She focuses on compliance and regulatory issues affecting healthcare providers, payers and employer-sponsored health plans. Hodge is also the chair of the American Health Law Association's Health and Information Technology Practice Group, an author and frequent speaker on healthcare law.