Steve Thompson reports: State health workers still often can’t use computers, access shared drives and get to important data a month after a cyberattack crippled Maryland’s health department, the head of a union representing agency employees said Friday. They’ve received little information about what’s going on and are preparing for the possibility that their systems could remain…
Category: U.S.
National Association of Community Health Centers to notify current and former employees of data breach
The National Association of Community Health Centers (NACHC) will start mailing letters on Monday to 935 current and former employees to inform them of a data breach last year. According to a copy of their notification letter that was submitted to the Maine Attorney General’s Office, on October 16, NACHC discovered that certain systems had…
Monroe Public Schools notifies 1,201 of data breach in June
Add Monroe Public Schools in Michigan to any list you may be keeping of schools hit by ransomware. On January 7, external counsel for the district notified individuals about an incident the district discovered on June 10, 2021 when certain systems and files were encrypted. The district reports that it immediately secured their network and…
Grass Valley discloses 2021 data breach
Yesterday, Grass Valley in California announced they had suffered a breach last year. Their disclosure does not say when they first detected any breach, but reports that their investigation determined that unauthorized access had occurred between April 13, 2021 and July 1, 2021. After further investigation, Grass Valley discovered that the unauthorized person transferred files…
FBI: Hackers use BadUSB to target defense firms with ransomware
Sergiu Gatlan reports: The Federal Bureau of Investigation (FBI) warned US companies in a recently updated flash alert that the financially motivated FIN7 cybercriminal group targeted the US defense industry with packages containing malicious USB devices to deploy ransomware. The attackers mailed packages containing ‘BadUSB’ or ‘Bad Beetle USB’ devices with the LilyGO logo, commonly…
Jefferson Surgical Clinic notifies 174,769 about June, 2021 data breach
If a covered entity detects a breach at the beginning of June 2021 but doesn’t notify patients until January 2022, will HHS think this is just fine? What if there was no encryption of data involved? Is it acceptable to take 7 months to notify patients if there are no unusual circumstances or request from…