Zack Whittaker reports: Security researchers have found dozens of companies inadvertently leaking sensitive corporate and customer data because staff are sharing public links to files in their Box enterprise storage accounts that can easily be discovered. The discoveries were made by Adversis, a cybersecurity firm, which found major tech companies and corporate giants had left…
Month: March 2019
Thousands of Arizonans hit in Medicaid agency’s data breach
Jessica Suerth reports: Thousands of Arizonans were affected by a data breach earlier this year that targeted the state’s Medicaid agency, it was announced Monday. The breach of the Arizona Health Care Cost Containment System affected more than 3,100 individuals when their IRS 1095-B forms were delivered to the wrong addresses. Read more on KTAR.
Another business associate breach, another gap to notification of patients
So here’s yet another breach with what seems like a long delay to notification. In this case, Re-Solutions, a division of RSC Insurance Brokerage in Massachusetts, is a business associate to healthcare providers. On August 23, 2018, an employee’s laptop was stolen. In its disclosure letter, the laptop was described as “password-protected,” but there was…
Stolen N.W.T. laptop was among dozens that were unencrypted and handed out to unsuspecting staff anyway
This is Part 3 of a 3-part series on a stolen laptop. If you missed the earlier parts, you can find them here: Part 1 and Part 2. Priscilla Hwang reports: The N.W.T. government’s information technology division knew a set of laptops were “very difficult” to encrypt, but still handed it out for government staff…
Hundreds of immigrant recruits risk ‘death sentence’ after Army bungles data, lawmaker says
Today’s reminder that some “human error” breaches can put lives at risk. Alex Horton reports: Army officials inadvertently disclosed sensitive information about hundreds of immigrant recruits from nations such as China and Russia, in a breach that could aid hostile governments in persecuting them or their families, a lawmaker and former U.S. officials said. A…
MyEquifax.com Bypasses Credit Freeze PIN
Brian Krebs reports: Most people who have frozen their credit files with Equifax have been issued a numeric Personal Identification Number (PIN) which is supposed to be required before a freeze can be lifted or thawed. Unfortunately, if you don’t already have an account at the credit bureau’s new myEquifax portal, it may be simple…