DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

MI: Finger-pointing over Macomb County security breach

Posted on November 14, 2014 by Dissent

Chad Selweski has an update on a breach reported on PHIprivacy.net in October:

County officials and contractors continue pointing fingers over a massive security breach in September that opened the door to identify theft by inadvertently exposing the Social Security numbers and dates of birth of more than 6,000 Macomb County employees and their dependents on the Internet.

Commissioner Bob Smith said Thursday he is concerned various players are “trying to spread the blame to all kinds of places.”

“This seems like a scapegoat act to try and make it look like outsiders were at fault,” said the Clinton Township Democrat, who noted a worker involved in the error has since left county employment. Officials say he was not fired.

Meanwhile, one of two consulting contractors blamed for the mess has cried foul. In an email to The Macomb Daily, Automated Benefit Services said the county and an IT consultant, Technology Resource Management, or TRM, were the culprits.

“At no point has, or will, ABS take responsibility for this incident,” the company’s attorney said.

Read more on Macomb County Daily. The county’s purchasing policy was changed as a result of the breach.

PHIprivacy.net had noted in its previous coverage that the county had acknowledged to this site that the breach was neither at nor by Automated Benefit Services, a statement that was seemingly contradicted by the county’s corporation counsel the following week, when he stated that “ABS immediately admitted fault and paid for creation and mailing of the letter, as well as the security protection enrollment through AllClear SECURE and AllClear PRO.”  Yet now we see ABS again insisting that they were not responsible for this breach.

TRM did not respond to an inquiry sent by PHIprivacy.net asking them to respond to ABS’s statements about their responsibility for the breach.

 


Related:

  • Maintenance Note
  • CISA Alert: Reported Supply Chain Compromise Affecting XZ Utils Data Compression Library, CVE-2024-3094
  • System Status Note
  • System Status Note
  • System Status Note
  • Fraudster's fake data breach claims should remind media to be careful what we report
Category: Uncategorized

Post navigation

← California Highway Patrol notifies drivers of missing collision investigation reports
Two Tennessee blokes use default ATM codes to steal over $400,000 →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Report released on PowerSchool cyber attack
  • Sue The Hackers – Google Sues Over Phishing as a Service
  • Princeton University Data Breach Impacts Alumni, Students, Employees
  • Eurofiber admits crooks swiped data from French unit after cyberattack
  • Five major changes to the regulation of cybersecurity in the UK under the Cyber Security and Resilience Bill
  • French agency Pajemploi reports data breach affecting 1.2M people
  • From bad to worse: Doctor Alliance hacked again by same threat actor (1)
  • Surveillance tech provider Protei was hacked, its data stolen, and its website defaced
  • Checkout.com Discloses Data Breach After Extortion Attempt
  • Washington Post hack exposes personal data of John Bolton, almost 10,000 others

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • CIPL Publishes Discussion Paper Comparing U.S. State Privacy Law Definitions of Personal Data and Sensitive Data
  • India’s Digital Personal Data Protection Act 2023 brought into force
  • Five major changes to the regulation of cybersecurity in the UK under the Cyber Security and Resilience Bill
  • Keeping Cool When ICE Arrives: Basic Raid Response Strategies for Laboratories
  • IRS Accessed Massive Database of Americans Flights Without a Warrant

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.