Home > The Data Breach Blog
The Data Breach Blog

St. Mary’s hospital database breach exposes 128,000

time Posted July 28, 2008 * Comments(0)

The personal information of thousands of clients and patients of St. Mary’s Regional Medical Center in Reno, Nev. was potentially compromised when a database was illegally accessed.

How many victims? About 128,000.

What type of personal information? Names, addresses and some health information and Social Security numbers.

Details: The breach, discovered April 28, resulted in the immediate shutdown of the database. Notifications, done by letter, were delayed because the database had to be rebuilt. There have been no reports of fraud as a result of the compromise.

What was the response? The hospital is offering one year of free credit monitoring to those patients whose Social Security numbers were stored in the database. 

Quote:“Our first concern is for the continued privacy and well-being of our patients and customers.” -Mike Uboldi, president and chief executive officer, in a news release.

Source: rgj.com, Reno Gazette-Journal, “St. Mary’s warns of possible data leak,” July 24.

Related Posts
  • Retired Ohio pension fund employee improperly emails himself database
    A retired Ohio Police & Fire Pension Fund employee improperly emailed himself the contents of a ...
  • Cancer not the only worry for 250 hospital patients in Alaska after laptop goes missing
    Where did the breach take place? Providence Alaska Medical Center in Anchorage, Alaska. How many vi...
  • California hospital employees’ information stolen
    A desktop computer containing the sensitive data of about 5,000 current and former employees at Pres...
  • Hacker obtains contact information of 6.3 million TD Ameritrade customers
  • Utah hospital loses laptop with patient records

Filed under: Breaches, Health Care

Investment firm exposes data on Supreme Court justice, 2,000 others

time Posted July 11, 2008 * Comments(1)

An employee of McLean, Va.-based investment company, Wagner Resource Group, accidentally exposed the personal information of thousands of its clients through LimeWire, a peer-to-peer (P2P) network.

What type of personal information? Names, Social Security numbers and birth dates.

How many victims? 2,000.

What happened? An employee’s P2P software apparently was configured to allow the sharing of documents with other LimeWire users.

Details: Among the victims is U.S. Supreme Court Justice Stephen Breyer. Tiversa, the P2P security company hired by Wagner to respond to the breach, determined that more than a dozen LimeWire users downloaded the files containing the confidential data.

Quote: “I didn’t even know what peer-to-peer was. I do now.” - Wagner Resource Group founder Phylyp Wagner.

Source: washingtonpost.com, The Washington Post, “Justice Breyer is Among Victims in Data Breach Caused by File Sharing,” July 9.

Related Posts
  • Disk with Delaware court information stolen
    Who are the victims? About 2,700 people associated with criminal cases in Delaware’s Superior Cour...
  • Merrill Lynch computer theft affects 33,000 employees, according to report
    What happened?/ A computer with the personal information of employees was stolen from a company offi...
  • Hard drive containing State Street data stolen
    A storage drive containing the personal information of 5,500 State Street employees and 40,000 custo...
  • Accounting firm loses laptop stolen containing energy company’s employee data
  • St. Louis sewer employee fired for downloading Social Security numbers of 1,600 employees

Filed under: Breaches

Organ and tissue donors’ personal info possibly exposed

time Posted July 11, 2008 * Comments(2)

A vulnerability in the Organ and Tissue Donor Registry, run by Florida’s Agency for Health Care Administrators, could have permitted the authorized viewing of the confidential data of some 55,000 people.

What type of personal information? Names, addresses, birth dates and driver’s license numbers.

Details: The breach occurred on June 20, and the hole was plugged a day later. Officials do not believe the information was wrongfully accessed.

Source: Associated Press, Naples (Fla.) News, “Breach in Fla. donor registry may have exposed IDs,” July 7.

Related Posts
  • Donors to Oregon health care system have PII exposed
    A computer virus potentially exposed to hackers the personal information of more than 11,500 donors ...
  • Personal info of more than 1,100 UC Davis vet school applicants hacked
    Where did the breach take place? The University of California, Davis graduate School of Veterinary M...
  • Utah hospital loses laptop with patient records
    Some 4,800 patients may have had their names, Social Security numbers and health care information ex...
  • HMO members’ personal info posted on website
  • Marketing services provider has server hacked

Filed under: Breaches, Government, Health Care

time The Data Breach Blog

Search This Blog:  


Categories
  • Breaches
  • Education
  • Finance
  • Government
  • Health Care
  • High Tech
  • Manufacturing
  • Non-profit
  • Retail
  • Uncategorized
Authors
  • Angela Moscaritolo (8)
  • Dan Kaplan (63)
Archives
  • November 2008
  • October 2008
  • September 2008
  • August 2008
  • July 2008
  • June 2008
  • May 2008
  • April 2008
  • March 2008
  • February 2008
  • January 2008
  • December 2007
  • November 2007
  • October 2007
  • September 2007
  • August 2007
  • July 2007
  • June 2007
  • Blogroll

    • Absolute Software Laptop Security Blog
    • Attrition.org Data Loss Archive
    • Marco Ramilli’s Blog
    • WordPress.com
    • WordPress.org
Home | News | Newsletters | Products | Blogs | Lists | Jobs | Events | Subscribe | Contact Us | About Us | Advertising | Editorial | Subscribe to our RSS feedsRSS

This material may not be published, broadcast, rewritten or redistributed in any form without prior authorization.

Your use of this website constitutes acceptance of Haymarket Media's Privacy Policy and Terms & Conditions