DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Missouri Department of Health and Senior Services notifies 10,400 whose data improperly retained by contractor

Posted on October 27, 2018 by Dissent

JEFFERSON CITY, MO – On October 24, 2018, the Missouri Department of Health and Senior Services (“Department”) mailed over 10,400 letters to individuals informing them that the Department recently discovered a breach of security of their personal information.  The breach occurred because, sometime before September 30, 2016, an information technology contractor for the State of Missouri, who had worked on a Department information system, improperly retained the information.  The past contractor then allowed the information to be stored in an electronic file that was not password-protected.

The type of personal information found in the electronic file includes names, dates of birth, identification numbers issued by some State agencies and a very limited number of social security numbers.  The types and amount of personal information retained by the contractor varied by person.  Each person did not necessarily have all types of personal information listed previously retained by the contractor.

When the State of Missouri learned of this situation on August 30, 2018, it took immediate steps to secure the information.  Since that time, the Department has been diligently analyzing the data contained in the electronic file to determine the scope of the breach and to determine contact information for affected individuals.

At the present time, the Department has no reason to believe that the information was actually viewed or used by anyone intending harm.  The Department has referred this matter to the appropriate legal authority to investigate and determine appropriate legal action.

The Department is recommending that individuals remain vigilant by reviewing account statements and monitoring free credit reports for unusual activity. Contact information for consumer credit reporting agencies is below.  You may wish to contact these agencies to place a free fraud alert on your credit or to request a free credit freeze.  Additional information about obtaining credit reports may be obtained from the Federal Trade Commission by visiting https://www.consumer.ftc.gov.

  • Equifax: 1-800-525-6285; www.equifax.com; https://www.freeze.equifax.com; P.O. Box 740241, Atlanta, GA 30374-0241.
  • Experian: 1-888-397-3742; www.experian.com; https://www.experian.com/freeze/center.html; P.O. Box 9532, Allen, TX 75013.
  • TransUnion: 1-800-680-7289; www.transunion.com; https://freeze.transunion.com;  Fraud Victim Assistance Division, P.O. Box 6790, Fullerton, CA 92834-6790.

Regarding this matter, Department Director Dr. Randall Williams, said:  “We have concerns that prior to September 30, 2016, a past contracted vendor may have acted illegally by retaining some names, dates of birth, identification numbers issued by some State agencies and a very limited number of social security numbers.  The State learned of this incident on the Thursday before Labor Day.  We immediately worked with other State agencies over the Labor Day holiday to prevent any dissemination of this data now or in the future.  Present leadership takes very seriously our requirement to protect information, and we have referred our findings to the appropriate law enforcement authority.”

Individuals who received a letter from the Department and have additional questions may call the Missouri Department of Health and Senior Services at 1-888-252-8045, Monday through Friday, 8 a.m. to 5 p.m.

About the Missouri Department of Health and Senior Services: The department seeks to be the leader in protecting health and keeping people safe. More information about DHSS can be found at health.mo.gov or find us on Facebook and Twitter @HealthyLivingMo.

Source: Missouri Department of Health and Senior Services


Related:

  • Two U.K. teenagers appear in court over Transport of London cyber attack
  • ModMed revealed they were victims of a cyberattack in July. Then some data showed up for sale.
  • Gatineau gymnastics centre warns members of possible data breach
  • Data breach in 42 Latvian municipalities: DVI imposes 300,000 euro fine on ZZ Dats
  • Kaufman County's data breach was their second one in three weeks
  • Protected health information of 462,000 members of Blue Cross Blue Shield of Montana involved in Conduent data breach
Category: Government SectorHealth DataInsiderSubcontractorU.S.

Post navigation

← 178 Albertans notified about privacy breach by former Alberta Health Services employee
Mirai Co-Author Gets 6 Months Confinement, $8.6M in Fines for Rutgers Attacks →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • District of Massachusetts Allows Higher-Ed Student Data Breach Claims to Survive
  • End of the game for cybercrime infrastructure: 1025 servers taken down
  • Doctor Alliance Data Breach: 353GB of Patient Files Allegedly Compromised, Ransom Demanded
  • St. Thomas Brushed Off Red Flags Before Dark-Web Data Dump Rocks Houston
  • A Wiltshire police breach posed possible safety concerns for violent crime victims as well as prison officers
  • Amendment 13 is gamechanger on data security enforcement in Israel
  • Almost two years later, Alpha Omega Winery notifies those affected by a data breach.
  • Court of Appeal reaffirms MFSA liability in data leak case, orders regulator to shoulder costs
  • A jailed hacking kingpin reveals all about the gang that left a trail of destruction
  • Army gynecologist took secret videos of patients during intimate exams, lawsuit says

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • As shoplifting surges, British retailers roll out ‘invasive’ facial recognition tools
  • Data broker Kochava agrees to change business practices to settle lawsuit
  • Amendment 13 is gamechanger on data security enforcement in Israel
  • Changes in the Rules for Disclosure for Substance Use Disorder Treatment Records: 42 CFR Part 2: What Changed, Why It Matters, and How It Aligns with HIPAAs
  • Always watching: How ICE’s plan to monitor social media 24/7 threatens privacy and civic participation

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.