The United States Department of Homeland Security (DHS) has released guidelines and points of contact for reporting cyber incidents to the Federal Government. This communication follows the recent release of Presidential Policy Directive 41 (PPD-41)—United States Cyber Incident Coordination—which outlines how the Federal Government will handle cyber incidents. Users and administrators are encouraged to review these documents…
Category: Of Note
HHS seeks threat information sharing system for health sector
Amanda Ziadeh reports: The Department of Health and Human Services is looking to strengthen the privacy and security of health care information by sharing cyber threat data with partner agencies and stakeholders. HHS’ Office of the National Coordinator for Health Information Technology and the Assistant Secretary for Preparedness and Response released funding opportunities for an…
Prosthetic & Orthotic Care confirms hack by TheDarkOverlord
Another one of TheDarkOverlord’s targets has issued a statement about the hack and theft of their patient information. DataBreaches.net had identified this entity and first reported on the hack on July 9. Somewhat disturbingly, and as we have seen in other cases with the same parameters, Prosthetic & Orthotic Care (P&O Care) does not appear to…
FTC reverses ALJ in LabMD case, finds for itself
From the no-surprise dept., this press release on an opinion by the FTC finding totally in their own favor: Commission Finds LabMD Liable for Unfair Data Security Practices Stating Company Failed to Protect Consumers’ Sensitive Medical and Personal Information The Federal Trade Commission today announced the issuance of an Opinion and Final Order reversing an…
NAIC Cybersecurity Task Force Weighs Credit Freezes
As a resource for my site visitors, I thought I’d mention an article by Josephine Cicchetti and Laura Wall on the relative merits of a credit freeze as opposed to credit monitoring if you are notified that your data has been caught up in a data breach. For a number of years now, both Brian Krebs…
MO: A second TheDarkOverlord target confirms hack (updated)
In the past 24 hours, two of TheDarkOverlord’s targets have publicly acknowledged breaches previously reported by this site. Yesterday, it was the Athens Orthopedic Clinic in Georgia who issued a public statement (previous coverage). Today, it’s a group of clinics in Farmington, Missouri (previous coverage). Daily Journal Online reports: The medical group which includes Midwest…