Brian Fung reports: In the first such case against a U.S. cable company, federal regulators are slapping Cox Communications with a $595,000 fine after Cox allowed hackers from Lizard Squad to penetrate its systems and steal private customer information. By posing as an IT administrator and tricking a couple of Cox employees into giving up their login credentials, a…
Huntington Medical Research Institutes discloses two HIPAA breaches in one-month period
HIPAA Journal reports: Nonprofit biomedical research company Huntington Medical Research Institutes (HMRI) has announced two HIPAA breaches in the space of a month: One involving the improper disposal of records, the other an alleged theft of patient data by a former employee. The insider breach reportedly impacted 4,300 patients. Read more on HIPAA Journal. The…
Ca: Simcoe nurse suspended by College of Nurses over privacy breach at Norfolk General Hospital
Monte Sonnenberg has a follow-up to a breach I commented on back in 2013: A Simcoe nurse fired from Norfolk General Hospital for inappropriately looking at medical records says she has been made “a scapegoat” for deficient management practices by her former employer. Nancy Oliveira said she did nothing that other nurses at NGH were not…
NC: Hacker changes grades at Panther Creek High School in Cary
T. Keung Hui reports: Cary Police are investigating after a hacker broke into the computer system at Panther Creek High School and changed the grades for some students, altering class ranks during the important college application period. In a letter posted on the school’s website Thursday, Panther Creek High Principal Camille Hedrick told families that the…
Interstitial Cystitis Network notifies customers of payment card breach
The California-based Interstitial Cystitis Network is notifying customers of a breach after customers first alerted them that payment cards used on their site had been compromised. In a letter dated October 26, ICN writes that the ICN Mail Order Center (www.icnsales.com) was compromised during the period of April 6, 2015 and October 1, 2015; customers placing orders during…
How Hackers Breached Two Gambling Payment Providers To Harvest ‘Millions’ Of Records ) (UPDATED)
Two breaches seemed small and innocuous at the time, but weren’t. A timely reminder why entities should notify even when they think risk is low. Thomas Fox-Brewster reports: In 2009 and 2010 two separate attacks hit widely-used online gambling payments processors Moneybookers and Neteller. Though they initially appeared innocuous, it now seems both attacks saw millions of…