DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Three new breaches revealed by HHS/OCR

Posted on November 14, 2010 by Dissent

While I was away, I see that there was another update to HHS’s breach tool web page:

Debra C. Duffy, a dentist in Texas, reported that 4,700 patients were notified of a breach that occurred on August 5 that involved the theft a laptop. I do not see a notice on her web site, so if anyone has additional info, please use the Comments section to add information. [Updated May 22, 2011: Dr. Duffy posted an updated breach notice on her web site in January 2011 that lists all of the data types involved in the breach, including treatment information, graphic images, and Social Security numbers.]

Northridge Hospital Medical Center in California reported that 837 patients were affected by a breach that occurred on October 16 involving the loss of paper records. A notice on their home page says, “Northridge Hospital Medical Center has experienced a security incident involving Medicare and Medi-Cal patient information. If you were a patient at our Hospital between September 2004 and June 2006, please visit our Security Alert Page for details.” That notice says, in part:

On October 18, 2010, Northridge Hospital Medical Center discovered that a package sent thru a national courier containing information for 716 Medicare and Medi-Cal patients was damaged in transit, potentially exposing patient information to courier employees. We have no reason to believe that the information left the confines of the courier’s facilities.

Northridge Hospital has sent letters offering credit monitoring services to all Medicare and Medi-Cal patients whose personal/sensitive information may have been exposed. If you were a patient between September 2004 and June 2006 and have not received a letter or have questions, please contact 1-877-906-1590.

The documents may have contained patient names, addresses, phone numbers, social security numbers, guarantor social security number, date of birth, date of death, medical record number, admission and discharge dates, discharge summary, physician, procedure, notes for pregnancy-related emergency, admission, financial account number, provider number, insurance ID, Medicare or Medi-Cal charges billed and paid, hospital room and board charges, Medi-Cal ID number, California Children’s Services Authorization, and Medi-Cal Treatment Authorization.

It’s not clear why the number reported in the notice is discrepant from the one reported to HHS.

Aetna Insurance of Connecticut reported that 2, 345 insured were affected by a breach that occurred in September involving Unauthorized Access/Disclosure. So far, I haven’t found any additional details on this incident, but will keep searching. If you have a copy of the notification, please send it in.

Category: Health Data

Post navigation

← Patient and personal info exposed when package sent by courier damaged in transit
Five Floridians charged with stealing patient info from HCH and doctor's office →

1 thought on “Three new breaches revealed by HHS/OCR”

  1. Anonymous says:
    November 15, 2010 at 10:37 pm

    Aetna is usually pretty good about protecting privacy. I assume they corrected things quickly.

Comments are closed.

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • FTC Finalizes Order with GoDaddy over Data Security Failures
  • Hacker steals $223 million in Cetus Protocol cryptocurrency heist
  • Operation ENDGAME strikes again: the ransomware kill chain broken at its source
  • Mysterious Database of 184 Million Records Exposes Vast Array of Login Credentials
  • Mysterious hacking group Careto was run by the Spanish government, sources say
  • 16 Defendants Federally Charged in Connection with DanaBot Malware Scheme That Infected Computers Worldwide
  • Russian national and leader of Qakbot malware conspiracy indicted in long-running global ransomware scheme
  • Texas Doctor Who Falsely Diagnosed Patients as Part of Insurance Fraud Scheme Sentenced to 10 Years’ Imprisonment
  • VanHelsing ransomware builder leaked on hacking forum
  • Hack of Opexus Was at Root of Massive Federal Data Breach

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • D.C. Federal Court Rules Termination of Democrat PCLOB Members Is Unlawful
  • Meta may continue to train AI with user data, German court says
  • Widow of slain Saudi journalist can’t pursue surveillance claims against Israeli spyware firm
  • Researchers Scrape 2 Billion Discord Messages and Publish Them Online
  • GDPR is cracking: Brussels rewrites its prized privacy law
  • Telegram Gave Authorities Data on More than 20,000 Users
  • Police secretly monitored New Orleans with facial recognition cameras

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.