DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

More class action settlements and suits, Friday morning edition

Posted on August 12, 2022 by Dissent

PCS Revenue Control Systems data breach $1.135M class action settlement

PCS Revenue Control Systems agreed to pay $1.135 million to resolve claims it failed to protect consumers from a data breach.

The settlement benefits consumers whose personal information was compromised in a PCS Revenue Control Systems data breach between May 19, 2017, and Dec. 19, 2019. An estimated 867,2019 individuals are included under this class definition.

The case is Gamez, et al. v. PCS Revenue Control Systems Inc., Case No. 2:21-cv-08991-JXN-AME in the U.S. District Court for the District of New Jersey, Newark Division

The breach was identified in 2019 but notifications did not go out until 2021.

Past coverage of the breach and lawsuit on DataBreaches.net can be found here, here, here, and here.

Read more at Top Class Actions.

 

Gastroenterology Consultants PA settles litigation over ransomware attack

Gastroenterology Consultants PA (GCPA) has agreed to settle consumer claims that the business did not adequately protect consumers from a data breach to GCPA’s computer systems on or around Jan. 10, 2021.

Previous coverage of this breach on DataBreaches can be found here. A review of HHS’s records indicates that GCPA reported the incident to HHS in March of 2021 as impacting 161,698 patients. HHS does not appear to have closed any investigation into the incident as of this time.

The settlement document indicates that CGPA “reached a resolution with the
cybercriminals” and “on or about August 6, 2021, provided all potentially impacted individuals with notice of the Data Incident. In total, GCPA notified approximately 162,163 individuals of the Data Incident.” The settlement, which was developed in mediation, does not name the ransomware group.

As part of the terms of the settlement, GCPA agreed to some remedial measures and security enhancements:

GCPA has adopted and implemented significant data security measures following the Data Incident, including multifactor authentication, VPN remote access protocols, EDR software implementation, operating system and backup upgrades, and restricted access procedures. GCP A has committed to completing a security risk assessment in 2022 and 2023, and to enact reasonable and appropriate security
enhancements identified in the security risk assessments. To date, GCP A estimates that the total costs of improvements is approximately $3,500 and that the improvements will cost an additional $11,500 in 2022.

The case is Dekenipp v. Gastroenterology Consultants, P.A., Case No. 202161470, in the Harris County District Court of Texas

Read more at Top Class Actions

Newly Filed Lawsuits

But while those are settling, lawsuits stemming from recent breach disclosures are being filed against OneTouchPoint, Cisco, and Twilio.

Cue Rosanna Danna saying “It’s always something.”

 

 

 

Category: Breach IncidentsMalwarePhishing

Post navigation

← Ransomware potentially exposed 2,000 Ypsilanti-area utility customers’ bank information
Warner Norcross & Judd notified 120,000 Priority Health Plan members of 2021 breach →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Turkish Group Hacks Zero-Day Flaw to Spy on Kurdish Forces
  • Cyberattacks on Long Island Schools Highlight Growing Threat
  • Dior faces scrutiny, fine in Korea for insufficient data breach reporting; data of wealthy clients in China, South Korea stolen
  • Administrator Of Online Criminal Marketplace Extradited From Kosovo To The United States
  • Twilio denies breach following leak of alleged Steam 2FA codes
  • Personal information exposed by Australian Human Rights Commission data breach
  • International cybercrime tackled: Amsterdam police and FBI dismantle proxy service Anyproxy
  • Moldovan Police Arrest Suspect in €4.5M Ransomware Attack on Dutch Research Agency
  • N.W.T.’s medical record system under the microscope after 2 reported cases of snooping
  • Department of Justice says Berkeley Research Group data breach may have exposed information on diocesan sex abuse survivors

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • License Plate Reader Company Flock Is Building a Massive People Lookup Tool, Leak Shows
  • FTC dismisses privacy concerns in Google breakup
  • ARC sells airline ticket records to ICE and others
  • Clothing Retailer, Todd Snyder, Inc., Settles CPPA Allegations Regarding California Consumer Privacy Act Violations
  • US Customs and Border Protection Plans to Photograph Everyone Exiting the US by Car
  • Google agrees to pay Texas $1.4 billion data privacy settlement
  • The App Store Freedom Act Compromises User Privacy To Punish Big Tech

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.