DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Category: U.S.

Texas health system settles potential HIPAA violations for disclosing patient information

Posted on May 10, 2017 by Dissent

Okay, this seems a bit harsh in terms of monetary penalty. From another HHS/OCR settlement announced today: Memorial Hermann Health System (MHHS) has agreed to pay $2.4 million to the U.S. Department of Health and Human Services (HHS) and adopt a comprehensive corrective action plan to settle potential violations of the Health Insurance Portability and Accountability…

Read more

Company Awarded Damages After Former Employee Hacks Its Systems and Hijacks Its Website

Posted on May 10, 2017 by Dissent

Michael Bertoncini writes: A company can recover damages from its former employee in connection with his hacking into its payroll system to inflate his pay, accessing its proprietary files without authorization and hijacking its website, a federal court ruled. Tyan, Inc. v. Yovan Garcia, Case No. CV 15-05443- MWF (JPRx) (C.D. Cali. May 2, 2017). The…

Read more

Confidential medical records from Bronx-Lebanon Hospital exposed online by vendor’s error

Posted on May 9, 2017 by Dissent

Vendor’s error appears to have exposed personal and confidential medical data of patients seen at Bronx-Lebanon Hospital Center since 2014; Records also include addiction histories, psych histories, and histories of physical or sexual abuse; Hospital investigating to determine what happened and who may have accessed data. By now, you may be tired of reading reports on misconfigured MongoDB installations…

Read more

Website Flaw Let True Health Diagnostics Users View All Medical Records

Posted on May 9, 2017 by Dissent

Brian Krebs reports on yet another entity/site that did not adequately secure patient information: True Health is a privately held health services company specializing in “comprehensive testing for early detection of chronic diseases,” according to the company’s Web site. The medical reports that True Health produces contain vast amounts of extremely personal information on patients,…

Read more

CO: Thousands potentially exposed to identity theft after county published sensitive information online

Posted on May 9, 2017 by Dissent

Ryan Luby reports: The Larimer County Clerk and Recorder’s office made sweeping changes to how it conducts business amid a Denver7 investigation, which revealed how officials had published sensitive information belonging to thousands of people online for months. Among the records were child support liens, death certificates, and commercial lending filings. Many of them contained a variation…

Read more

Diamond Institute for Infertility and Menopause notifies patients after hack

Posted on May 8, 2017 by Dissent

Diamond Institute for Infertility and Menopause in New Jersey recently started notifying patients of an incident involving their electronic health records server, maintained by an unnamed third party. In a letter to the New Hampshire Attorney General’s Office, Diamond’s external counsel wrote: On February 27, 2017, Diamond discovered that an unknown individual had gained access to the…

Read more
  • Previous
  • 1
  • …
  • 830
  • 831
  • 832
  • 833
  • 834
  • 835
  • 836
  • …
  • 1,914
  • Next

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Cyberattack pushes German napkin company into insolvency
  • WMATA Train Operators Arrested in Health Care Fraud Scheme
  • Washington Post investigating cyberattack on journalists, WSJ reports
  • Resource: State Data Breach Notification Laws – June 2025
  • WestJet investigates cyberattack disrupting internal systems
  • Plastic surgeons often store nude photos of patients with their identity information. When would we call that “negligent?”
  • India: Servers of two city hospitals hacked; police register FIR
  • Ph: Coop Hospital confirms probe into reported cyberattack
  • Slapped wrists for Financial Conduct Authority staff who emailed work data home
  • School Districts Unaware BoardDocs Software Published Their Private Files

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Vermont signs Kids Code into law, faces legal challenges
  • Data Categories and Surveillance Pricing: Ferguson’s Nuanced Approach to Privacy Innovation
  • Anne Wojcicki Wins Bidding for 23andMe
  • Would you — or wouldn’t you?
  • New York passes a bill to prevent AI-fueled disasters
  • Synthetic Data and the Illusion of Privacy: Legal Risks of Using De-Identified AI Training Sets
  • States sue to block the sale of genetic data collected by DNA testing company 23andMe

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.