DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Vision for Hope notification of data security incident

Posted on August 8, 2021 by Dissent

Hope started as a school in Illinois for children with disabilities, but it expanded its mission over the years. This is a notification they posted on August 3:

Vision for Hope (“Hope”) recently discovered an incident that may have involved the personal information or protected health information of some of its patients or other individuals. Although Hope has no reason to believe that any personal information or protected health information has been misused for the purpose of committing fraud or identity theft, it is notifying the potentially affected patients to advise them about the steps it has taken to address the incident and provide them with guidance on what they can do to protect themselves.

Hope recently discovered that an unknown, unauthorized person gained access to the email account of one Hope employee from February 14, 2021 to April 2, 2021. Upon learning of the incident, Hope immediately took action to secure the email account to prevent any further access.  Hope engaged a leading forensic security firm to investigate the incident. As part of that investigation, Hope searched the account for any personal information or protected health information.  Hope completed its investigation and determined on June 4, 2021 that the account contained personal or protected health information for certain individuals. That information included, depending on the individual, their name, date of birth, Social Security number, driver’s license number, financial account number, medical treatment or diagnosis information, and/or medical insurance information.

On August 3, 2021, Hope began sending written notifications to individuals whose personal information or protected health information was contained in the email account for whom it has contact information, and arranged for complimentary identity theft protection services for those individuals whose Social Security numbers and/or driver’s license numbers were involved in the incident.

Notified individuals should refer to the notice they will receive in the mail regarding steps they can take to protect themselves.  Again, Hope has no reason to believe that any personal information has been misused for the purpose of committing fraud or identity theft, but as a precautionary measure, notified individuals should remain vigilant to protect against potential fraud and/or identity theft by, among other things, reviewing their account statements and monitoring credit reports closely.  If individuals detect any suspicious activity on an account, they should promptly notify the financial institution or company with which the account is maintained.  They should also promptly report any fraudulent activity or any suspected incidents of identity theft to proper law enforcement authorities, including the police and their state’s attorney general.  Notified individuals may also wish to review the tips provided by the Federal Trade Commission (“FTC”) on fraud alerts, security/credit freezes and steps that they can take to avoid identity theft.  For more information and to contact the FTC, please visit www.ftc.gov/idtheft or call 1-877-ID-THEFT (1-877-438-4338).  Notified individuals may also contact the FTC at: Federal Trade Commission, 600 Pennsylvania Avenue, NW, Washington, DC 20580.

Hope deeply regrets any concern or inconvenience this incident may cause. Hope is reinforcing information security procedures with its employees and implementing changes to help prevent an incident like this from happening again. Additional information is available via a confidential, toll-free inquiry line at 855-623-1970 from 8:00 a.m. – 5:30 p.m. Central, Monday through Friday.

Source:  Hope.us

No related posts.

Category: Education SectorHackHealth DataU.S.

Post navigation

← Long Island Jewish Forest Hills Notifies Patients Who Were Potentially Impacted by a Former Employee’s Unauthorized Access of Electronic Medical Records
Actively exploited bug bypasses authentication on millions of routers →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Avantic Medical Lab hacked; patient data leaked by Everest Group
  • Integrated Oncology Network victim of phishing attack; multiple locations affected (2)
  • HHS’ Office for Civil Rights Settles HIPAA Privacy and Security Rule Investigation with Deer Oaks Behavioral Health for $225k and a Corrective Action Plan
  • HB1127 Explained: North Dakota’s New InfoSec Requirements for Financial Corporations
  • Credit reports among personal data of 190,000 breached, put for sale on Dark Web; IT vendor fined
  • Five youths arrested on suspicion of phishing
  • Russia Jailed Hacker Who Worked for Ukrainian Intelligence to Launch Cyberattacks on Critical Infrastructure
  • Kentfield Hospital victim of cyberattack by World Leaks, patient data involved
  • India’s Max Financial says hacker accessed customer data from its insurance unit
  • Brazil’s central bank service provider hacked, $140M stolen

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Google Settles Privacy Class Action Over Period Tracking App
  • ICE Is Searching a Massive Insurance and Medical Bill Database to Find Deportation Targets
  • Franklin, Tennessee Resident Sentenced to 30 Months in Federal Prison on Multiple Cyber Stalking Charges
  • On July 7, Gemini AI will access your WhatsApp and more. Learn how to disable it on Android.
  • German court awards Facebook user €5,000 for data protection violations
  • Record-Breaking $1.55M CCPA Settlement Against Health Information Website Publisher
  • Ninth Circuit Reviews Website Tracking Class Actions and the Reach of California’s Privacy Law

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.