DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

More class action settlements and suits, Friday morning edition

Posted on August 12, 2022 by Dissent

PCS Revenue Control Systems data breach $1.135M class action settlement

PCS Revenue Control Systems agreed to pay $1.135 million to resolve claims it failed to protect consumers from a data breach.

The settlement benefits consumers whose personal information was compromised in a PCS Revenue Control Systems data breach between May 19, 2017, and Dec. 19, 2019. An estimated 867,2019 individuals are included under this class definition.

The case is Gamez, et al. v. PCS Revenue Control Systems Inc., Case No. 2:21-cv-08991-JXN-AME in the U.S. District Court for the District of New Jersey, Newark Division

The breach was identified in 2019 but notifications did not go out until 2021.

Past coverage of the breach and lawsuit on DataBreaches.net can be found here, here, here, and here.

Read more at Top Class Actions.

 

Gastroenterology Consultants PA settles litigation over ransomware attack

Gastroenterology Consultants PA (GCPA) has agreed to settle consumer claims that the business did not adequately protect consumers from a data breach to GCPA’s computer systems on or around Jan. 10, 2021.

Previous coverage of this breach on DataBreaches can be found here. A review of HHS’s records indicates that GCPA reported the incident to HHS in March of 2021 as impacting 161,698 patients. HHS does not appear to have closed any investigation into the incident as of this time.

The settlement document indicates that CGPA “reached a resolution with the
cybercriminals” and “on or about August 6, 2021, provided all potentially impacted individuals with notice of the Data Incident. In total, GCPA notified approximately 162,163 individuals of the Data Incident.” The settlement, which was developed in mediation, does not name the ransomware group.

As part of the terms of the settlement, GCPA agreed to some remedial measures and security enhancements:

GCPA has adopted and implemented significant data security measures following the Data Incident, including multifactor authentication, VPN remote access protocols, EDR software implementation, operating system and backup upgrades, and restricted access procedures. GCP A has committed to completing a security risk assessment in 2022 and 2023, and to enact reasonable and appropriate security
enhancements identified in the security risk assessments. To date, GCP A estimates that the total costs of improvements is approximately $3,500 and that the improvements will cost an additional $11,500 in 2022.

The case is Dekenipp v. Gastroenterology Consultants, P.A., Case No. 202161470, in the Harris County District Court of Texas

Read more at Top Class Actions

Newly Filed Lawsuits

But while those are settling, lawsuits stemming from recent breach disclosures are being filed against OneTouchPoint, Cisco, and Twilio.

Cue Rosanna Danna saying “It’s always something.”

 

 

 

Category: Breach IncidentsMalwarePhishing

Post navigation

← Ransomware potentially exposed 2,000 Ypsilanti-area utility customers’ bank information
Warner Norcross & Judd notified 120,000 Priority Health Plan members of 2021 breach →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Rewards for Justice offers $10M reward for info on RedLine developer or RedLine’s use by foreign governments
  • New evidence links long-running hacking group to Indian government
  • Zaporizhzhia Cyber ​​Police Exposes Hacker Who Caused Millions in Losses to Victims by Mining Cryptocurrency
  • Germany fines Vodafone $51 million for privacy, security breaches
  • Google: Hackers target Salesforce accounts in data extortion attacks
  • The US Grid Attack Looming on the Horizon
  • US govt login portal could be one cyberattack away from collapse, say auditors
  • Two Men Sentenced to Prison for Aggravated Identity Theft and Computer Hacking Crimes
  • 100,000 UK taxpayer accounts hit in £47m phishing attack on HMRC
  • CISA Alert: Updated Guidance on Play Ransomware

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • How the FBI Sought a Warrant to Search Instagram of Columbia Student Protesters
  • Germany fines Vodafone $51 million for privacy, security breaches
  • Malaysia enacts data sharing rules for public sector
  • U.S. Enacts Take It Down Act
  • 23andMe Bankruptcy Judge Ponders Trump Bill’s Injunction Impact
  • Hell No: The ODNI Wants to Make it Easier for the Government to Buy Your Data Without Warrant
  • US State Dept. says silence or anonymity on social media is suspicious

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.