DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

OR: Patient Information Stolen from Reedsport Clinic

Posted on May 10, 2011 by Dissent

KEZI in Oregon reports:

A Reedsport clinic is alerting patients about a recent data breach.

Police are looking for a hard drive containing patient information from Dunes Family Health Care.

The organization that downloads and stores the clinic’s electronic records says it went missing on March 11.

The clinic sent notices to more than 16,000 current and former patients Tuesday about the data breach.

The clinic believes many of the records contain Social Security Numbers, names, addresses, birthdays, and clinical information.

A statement on the facility’s web site, posted today, reads:

On March 11, 2011, the organization maintaining the clinic’s back-up electronic files discovered that the external hard drive on which those files were stored was missing. The hard drive was stored in a locked, fire-protected building with very limited access.

Nonetheless, we believe the hard drive was stolen by a person or persons unknown. The apparent theft was reported to the police and they are still investigating the matter with the help of the Oregon State Crime Lab.

We are committed to safeguarding our patients’ sensitive personal information, and have taken immediate steps to fortify the measures protecting our back up files. Those files are now being stored under increased physical security and are encrypted.

The files that were stolen cover a wide variety of situations and patient encounters. Many of these files contain patients’ Social Security numbers (“SSN”), as well as other personal information. Others did not include SSNs, but may include a name, date of birth, address or clinical information. For that reason, we are providing identity theft safeguards to current and former patients who have been affected by this incident.

[…]

Some additional information is provided in coverage by the Umpqua Post.

Okay, so why weren’t the data on the hard drive encrypted? Why are entities so quick to implement encryption following a breach? If it’s that quick/relatively easy to do, why didn’t they do it before now?

Related posts:

  • The Oregon Clinic notifies patients after employee email account hacked
Category: Health Data

Post navigation

← Michaels Stores breach bigger than first reported
OR: Patient Information Stolen from Reedsport Clinic →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Hackers Using PDFs to Impersonate Microsoft, DocuSign, and More in Callback Phishing Campaigns
  • One in Five Law Firms Hit by Cyberattacks Over Past 12 Months
  • U.S. Sanctions Russian Bulletproof Hosting Provider for Supporting Cybercriminals Behind Ransomware
  • Senator Chides FBI for Weak Advice on Mobile Security
  • Cl0p cybercrime gang’s data exfiltration tool found vulnerable to RCE attacks
  • Kelly Benefits updates its 2024 data breach report: impacts 550,000 customers
  • Qantas customers involved in mammoth data breach
  • CMS Sending Letters to 103,000 Medicare beneficiaries whose info was involved in a Medicare.gov breach.
  • Esse Health provides update about April cyberattack and notifies 263,601 people
  • Terrible tales of opsec oversights: How cybercrooks get themselves caught

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Kids are making deepfakes of each other, and laws aren’t keeping up
  • The Trump administration is building a national citizenship data system
  • Supreme Court Decision on Age Verification Tramples Free Speech and Undermines Privacy
  • New Jersey Issues Draft Privacy Regulations: The New
  • Hacker helped kill FBI sources, witnesses in El Chapo case, according to watchdog report
  • Germany Wants Apple, Google to Remove DeepSeek From Their App Stores
  • Supreme Court upholds Texas law requiring age verification on porn sites

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.