DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Brooke Mueller sues rehab clinic; alleges employee sent info to media

Posted on October 4, 2011 by Dissent

She had indicated her intention to sue back in February 2010, and I’m somewhat surprised it took so long, but now Brooke Mueller has filed a lawsuit against The Canyon rehab facility for privacy violations. TMZ reports that the lawsuit alleges the facility sold her confidential information to the media:

 

TMZ broke the story after the leak … someone was sending Brooke’s patient admissions document to members of the media … including TMZ, and the form very specifically outlined Brooke’s problems.  TMZ never published info from the document.

Brooke claims it was all a crass money grab from staffers at The Canyon — and now, she’s suing for undisclosed damages, claiming her right to privacy has been violated.

A rep for The Canyon had no comment, although as we first reported, after the leak The Canyon officials said they would conduct their own internal investigation.

So… did The Canyon ever report a breach to HHS, and if so, did HHS ever investigate?  Did the state of California, who has fined a number of hospitals for employee-related privacy breaches, ever investigate this?  And were any criminal charges ever filed under HIPAA or California state law?

Obviously, as someone just reading about the case and allegations, I don’t know the facts of the case.  But such allegations are serious because apart from the potential privacy harm to the patient and potential reputation harm to the facility, these types of reports or situations may make people reluctant to seek help.  Patients seeking treatment for substance abuse issues or mental health issues really need to feel that their confidential information will be kept confidential or they may be frightened off from treatment.

So while this case works its way through the courts and media, I hope that relevant agencies have also been involved and will publicly share their findings as to whether there was a HIPAA violation here.


Related:

  • JFL Lost Up to $800,000 Weekly After Cyberattack, CEO Says No Patient or Staff Data Was Compromised
  • Massachusetts hospitals Heywood, Athol say outage was a cybersecurity incident
  • Heritage Provider Network $49.99M Class Action Settlement
  • Integris Health Agrees to $30 Million Settlement Over 2023 Data Breach
  • They were victims of a massive data breach in 2009. Interior Health denied it for a decade.
  • Watsonville Community Hospital had a data breach -- or two. It would be helpful to know which.
Category: Health Data

Post navigation

← UK: 10,000 archived records destroyed in hospital data blunder, diaries stolen from nurse's car
Betfair security chief departs after data breach exposed →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Washington Post hack exposes personal data of John Bolton, almost 10,000 others
  • Draft UK Cyber Security and Resilience Bill Enters UK Parliament
  • Suspected Russian hacker reportedly detained in Thailand, faces possible US extradition
  • Did you hear the one about the ransom victim who made a ransom installment payment after they were told that it wouldn’t be accepted?
  • District of Massachusetts Allows Higher-Ed Student Data Breach Claims to Survive
  • End of the game for cybercrime infrastructure: 1025 servers taken down
  • Doctor Alliance Data Breach: 353GB of Patient Files Allegedly Compromised, Ransom Demanded
  • St. Thomas Brushed Off Red Flags Before Dark-Web Data Dump Rocks Houston
  • A Wiltshire police breach posed possible safety concerns for violent crime victims as well as prison officers
  • Amendment 13 is gamechanger on data security enforcement in Israel

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Maryland Privacy Crackdown Raises Bar for Disclosure Compliance
  • Lawmakers Warn Governors About Sharing Drivers’ Data with Federal Government
  • As shoplifting surges, British retailers roll out ‘invasive’ facial recognition tools
  • Data broker Kochava agrees to change business practices to settle lawsuit
  • Amendment 13 is gamechanger on data security enforcement in Israel

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.