DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

More class action settlements and suits, Friday morning edition

Posted on August 12, 2022 by Dissent

PCS Revenue Control Systems data breach $1.135M class action settlement

PCS Revenue Control Systems agreed to pay $1.135 million to resolve claims it failed to protect consumers from a data breach.

The settlement benefits consumers whose personal information was compromised in a PCS Revenue Control Systems data breach between May 19, 2017, and Dec. 19, 2019. An estimated 867,2019 individuals are included under this class definition.

The case is Gamez, et al. v. PCS Revenue Control Systems Inc., Case No. 2:21-cv-08991-JXN-AME in the U.S. District Court for the District of New Jersey, Newark Division

The breach was identified in 2019 but notifications did not go out until 2021.

Past coverage of the breach and lawsuit on DataBreaches.net can be found here, here, here, and here.

Read more at Top Class Actions.

 

Gastroenterology Consultants PA settles litigation over ransomware attack

Gastroenterology Consultants PA (GCPA) has agreed to settle consumer claims that the business did not adequately protect consumers from a data breach to GCPA’s computer systems on or around Jan. 10, 2021.

Previous coverage of this breach on DataBreaches can be found here. A review of HHS’s records indicates that GCPA reported the incident to HHS in March of 2021 as impacting 161,698 patients. HHS does not appear to have closed any investigation into the incident as of this time.

The settlement document indicates that CGPA “reached a resolution with the
cybercriminals” and “on or about August 6, 2021, provided all potentially impacted individuals with notice of the Data Incident. In total, GCPA notified approximately 162,163 individuals of the Data Incident.” The settlement, which was developed in mediation, does not name the ransomware group.

As part of the terms of the settlement, GCPA agreed to some remedial measures and security enhancements:

GCPA has adopted and implemented significant data security measures following the Data Incident, including multifactor authentication, VPN remote access protocols, EDR software implementation, operating system and backup upgrades, and restricted access procedures. GCP A has committed to completing a security risk assessment in 2022 and 2023, and to enact reasonable and appropriate security
enhancements identified in the security risk assessments. To date, GCP A estimates that the total costs of improvements is approximately $3,500 and that the improvements will cost an additional $11,500 in 2022.

The case is Dekenipp v. Gastroenterology Consultants, P.A., Case No. 202161470, in the Harris County District Court of Texas

Read more at Top Class Actions

Newly Filed Lawsuits

But while those are settling, lawsuits stemming from recent breach disclosures are being filed against OneTouchPoint, Cisco, and Twilio.

Cue Rosanna Danna saying “It’s always something.”

 

 

 

No related posts.

Category: Breach IncidentsMalwarePhishing

Post navigation

← Ransomware potentially exposed 2,000 Ypsilanti-area utility customers’ bank information
Warner Norcross & Judd notified 120,000 Priority Health Plan members of 2021 breach →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Ransomware in Italy, strike at the Diskstation gang: hacker group leader arrested in Milan
  • A year after cyber attack, Columbus could invest $23M in cybersecurity upgrades
  • Gravity Forms Breach Hits 1M WordPress Sites
  • Stormous claims to have protected health info on 600,000 patients of North Country Healthcare. The data appear fake. (1)
  • Back from the Brink: District Court Clears Air Regarding Individualized Damages Assessment in Data Breach Cases
  • Multiple lawsuits filed against Doyon Ltd over April 2024 data breach and late notification
  • Chinese hackers suspected in breach of powerful DC law firm
  • Qilin Emerged as The Most Active Group, Exploiting Unpatched Fortinet Vulnerabilities
  • CISA tags Citrix Bleed 2 as exploited, gives agencies a day to patch
  • McDonald’s McHire leak involving ‘123456’ admin password exposes 64 million applicant chat records

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Here’s What a Reproductive Police State Looks Like
  • Meta investors, Zuckerberg to square off at $8 billion trial over alleged privacy violations
  • Australian law is now clearer about clinicians’ discretion to tell our patients’ relatives about their genetic risk
  • The ICO’s AI and biometrics strategy
  • Trump Border Czar Boasts ICE Can ‘Briefly Detain’ People Based On ‘Physical Appearance’
  • DeleteMyInfo Wins 2025 Digital Privacy Excellence Award from Internet Safety Council
  • TikTok Loses First Appeal Against £12.7M ICO Fine, Faces Second Investigation by DPC

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.