Christopher Rowland reports that Full Circle Health Care in Maine found itself locked out of its own patients’ records after a fee dispute with CompuGroup, a German corporation with U.S. headquarters in Boston. Read about this situation on Boston Globe, and then take another look at your vendor/business associate contracts. Could this happen to you?…
CFPB Must Improve Financial Data Security: GAO
Mike Muckian reports: If you’re one of the 25 million to 75 million U.S. credit cardholders whose account information has been gathered by the CFPB, your financial data may not be as safe as it should be. The U.S. Governmental Accountability Office recently analyzed the bureau’s data security practices and was not pleased with the…
Cook County Health & Hospitals System notifies hundreds of patients that email with PHI was sent without encryption
On September 17, Cook County Health & Hospitals System posted a breach notification on their site: As part of a collaborative public health project, an individual working on behalf of CCHHS sent an e-mail to an authorized individual at a non-Cook County healthcare organization in July 2014. The transmitted information contained protected health information that…
Kansas State U. discloses possible leak of student personal information
Earlier this month, Rick Dean reported: Kansas State University officials say an internal error may have exposed on the Internet personal information from candidates seeking admission to the school’s graduate program in agronomy. In a news release Wednesday, school officials said 19 persons who had applied for admission to graduate programs between 2010 and 2013…
Omaha Burke apologizes for information leak
Jeremy Maskel reports: Omaha Burke High School Principal Dr. Deborah Frison apologized in an email to families Wednesday, after an earlier email included an attachment with more than 2,000 students’ home addresses, phone numbers and student ID numbers. The email did not include any Social Security numbers. Read more on KETV. h/t, @VERISDB
NI: Former police officer’s damages award accounted for data breach distress, rules NI court
Out-Law.com reports: A former police officer’s claim for a £20,000 damages award to be significantly increased to reflect the distress he suffered as a result of the theft of his sensitive personal data has been rejected by a court in Northern Ireland. The former Special Branch officer, referred to only as ‘CR19’ in the judgment…