DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

OH: Personal info found at trash bin in Warren

Posted on July 5, 2011 by Dissent

Matthew Steffy reports:

Legal documents from a defunct law firm bearing personal information including Social Security numbers and dates of birth on thousands of documents surfaced in an open trash bin in downtown Warren this week.

The documents include names, addresses, spousal and child information, Social Security numbers, dates of birth and income earnings. The information was left unguarded in the bin for more than 24 hours, but the Ohio Supreme Court and local Bar Association secured the trash receptacle after receiving phone calls about the matter from the Tribune Chronicle.

The move, brought to the attention of the Tribune Chronicle by an anonymous caller, left some of those named in the documents angry and dumbfounded.

Attorney Randy Rudloff, legal counsel for the local Bar Association, said disposing of those files without destroying them was “certainly not something that you want to see happen.” He said describing the action as negligent “would be an understatement.”

According to letterhead on some of the documents observed by the Tribune Chronicle, the papers were once the property of Spain & Spain Company, a law firm formerly located on East Market Street in Warren. Fully Spain and John R. Spain, the attorneys of Spain & Spain, both are deceased. John Spain died in 1992, and Fully Spain passed in 2006 at the age of 90.

The trash receptacle containing in the files is located at the Park Place building, 155 S. Park Ave., that is owned by Irene Makridis.

Makridis, also a lawyer, said she gave the previous tenants, which included two local law firms, ample time to remove all files and possessions. Now, she said, the files are being discarded.

“I don’t know who is liable for them and I don’t know why they were not destroyed,” Makridis said. ”I told those tenants that I would be disposing of them, and I am disposing of them now.”

Rudloff said Makridis’ action was, at the least, careless.

“This certainly goes to issues of compliance of disciplinary rules,” Rudloff said. “That would be applicable in this case because the owner of the building is a lawyer and should know better than to do this.”

The Ohio State Bar Association, state Supreme Court and Ohio Attorney General stopped short of calling the action illegal, but they said the situation was dangerous because clients’ identification could be stolen. Messages left Thursday seeking comment from the Board of Commissioners for Grievances and Discipline at the Ohio Supreme Court were not immediately returned.

[…]

Read more on Tribune Chronicle.

This is an especially infuriating breach because the person discarding the documents without shredding really should have known better if she is a lawyer.  If I were to find myself with a stash of documents or files from a mental health professional, I wouldn’t just discard them without having them shredded.  In fact, I have actually been in that situation twice now in recent years, and each time, arranged to have sensitive files shredded.

Did no one care about the privacy and security of the clients of the now-deceased attorneys? And who was really responsible for those files?  Had the law firm’s remaining partner made arrangements as to who would take custody of the files before his death? Were the recent tenants actually custodians of the files and responsible for them?

I hope there’s a full investigation of this so that all responsible parties are asked to account for their actions – or inaction.


Related:

  • ModMed revealed they were victims of a cyberattack in July. Then some data showed up for sale.
  • Toys “R” Us Canada customers notified of breach of personal information
  • Gatineau gymnastics centre warns members of possible data breach
  • Hotel and Casino near Las Vegas Strip suffers data breach, documents say
  • KT Chief to Resign After Cybersecurity Breach Resolution
  • Cyber-Attack On Bectu’s Parent Union Sparks UK National Security Concerns
Category: Breach IncidentsBusiness SectorExposurePaper

Post navigation

← Prized Patient information open to Web-Highest Number of Security Breaches in Healthcare – Medical Providers ??
CA: 1200 Sutter Gould Medical Foundation patients’ records tossed into dump →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • District of Massachusetts Allows Higher-Ed Student Data Breach Claims to Survive
  • End of the game for cybercrime infrastructure: 1025 servers taken down
  • Doctor Alliance Data Breach: 353GB of Patient Files Allegedly Compromised, Ransom Demanded
  • St. Thomas Brushed Off Red Flags Before Dark-Web Data Dump Rocks Houston
  • A Wiltshire police breach posed possible safety concerns for violent crime victims as well as prison officers
  • Amendment 13 is gamechanger on data security enforcement in Israel
  • Almost two years later, Alpha Omega Winery notifies those affected by a data breach.
  • Court of Appeal reaffirms MFSA liability in data leak case, orders regulator to shoulder costs
  • A jailed hacking kingpin reveals all about the gang that left a trail of destruction
  • Army gynecologist took secret videos of patients during intimate exams, lawsuit says

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • As shoplifting surges, British retailers roll out ‘invasive’ facial recognition tools
  • Data broker Kochava agrees to change business practices to settle lawsuit
  • Amendment 13 is gamechanger on data security enforcement in Israel
  • Changes in the Rules for Disclosure for Substance Use Disorder Treatment Records: 42 CFR Part 2: What Changed, Why It Matters, and How It Aligns with HIPAAs
  • Always watching: How ICE’s plan to monitor social media 24/7 threatens privacy and civic participation

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.