DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Doctor charged for unauthorized access to personal information of pediatric patients at Texas Children’s Hospital

Posted on June 20, 2024 by Dissent

Is the following case an example of insider threat or it is a whistleblower situation — or both?

The U.S. Attorney’s Office of Southern Texas issued the following press release on June 17:

A Houston doctor has been indicted for obtaining protected individual health information for patients that were not under his care and without authorization, announced Alamdar S. Hamdani.

The case against Ethan Haim, 34, Dallas, has now been unsealed, and he is set to make his initial appearance before U.S. Magistrate Yvonne Y. Ho in Houston at 2 p.m.

The four-count indictment alleges Haim obtained personal information including patient names, treatment codes and the attending physician from Texas Children’s Hospital’s (TCH) electronic system without authorization. He allegedly obtained this information under false pretenses and with intent to cause malicious harm to TCH.

According to the indictment, Haim was a resident at Baylor College of Medicine and had previous rotations at TCH as part of his residency.

In April 2023, Haim allegedly requested to re-activate his login access at TCH to access pediatric patients not under his care. The indictment alleges he obtained unauthorized access to personal information of pediatric patients under false pretenses and later disclosed it to a media contact.

If convicted, Haim faces up to 10 years in federal prison and a $250,000 maximum possible fine.

FBI conducted the investigation. Assistant U.S Attorney Tina Ansari is prosecuting the case.

An indictment is a formal accusation of criminal conduct, not evidence. A defendant is presumed innocent unless convicted through due process of law.

Updated June 17, 2024

Source: U.S. Attorney’s Office, Southern District of Texas

Although the indictment was reportedly unsealed, the docket does not appear to be online yet. Media coverage by USA Today suggests that this case may be viewed as a whistleblower case by some and not just a case Dr. Haim violating HIPAA. USA Today reports:

Last year, Haim, at the time a surgical resident at Houston-based Texas Children’s Hospital, gave conservative journalist Christopher Rufo records indicating that the hospital had secretly continued “transgender medical interventions” on minors despite a public pledge that it had stopped such treatments.

Read more at USA Today.


Related:

  • TX: Kaufman County Faces Cybersecurity Attack: Courthouse Computer Operations Disrupted
  • Bombay High Court Orders Department of Telecommunications to Block Medusa Accounts After Generali Insurance Data Breach
  • Attorney General James Announces Settlement with Wojeski & Company Accounting Firm
  • JFL Lost Up to $800,000 Weekly After Cyberattack, CEO Says No Patient or Staff Data Was Compromised
  • John Bolton Indictment Provides Interesting Details About Hack of His AOL Account and Extortion Attempt
  • UK: 'Catastrophic' attack as Russians hack files on EIGHT MoD bases and post them on the dark web
Category: Health DataInsiderOf NoteU.S.

Post navigation

← Association of Texas Professional Educators notifying 414,515 members of data breach (1)
Hacker Leaks Data of 33,000 Accenture Employees in Third-Party Breach (1) →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Threat actors have reportedly launched yet another campaign involving an application connected to Salesforce
  • Russian hackers target IVF clinics across UK used by thousands of couples
  • US, allies sanction Russian bulletproof hosting services for ransomware support
  • Researchers claim ‘largest leak ever’ after uncovering WhatsApp enumeration flaw
  • Large medical lab in South Africa suffers multiple data breaches
  • Report released on PowerSchool cyber attack
  • Sue The Hackers – Google Sues Over Phishing as a Service
  • Princeton University Data Breach Impacts Alumni, Students, Employees
  • Eurofiber admits crooks swiped data from French unit after cyberattack
  • Five major changes to the regulation of cybersecurity in the UK under the Cyber Security and Resilience Bill

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Closing the Privacy Gap: HIPRA Targets Health Apps and Wearables
  • Researchers claim ‘largest leak ever’ after uncovering WhatsApp enumeration flaw
  • CIPL Publishes Discussion Paper Comparing U.S. State Privacy Law Definitions of Personal Data and Sensitive Data
  • India’s Digital Personal Data Protection Act 2023 brought into force
  • Five major changes to the regulation of cybersecurity in the UK under the Cyber Security and Resilience Bill

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.