BreachExchange mailing list archives

Hospital reports security breach


From: security curmudgeon <jericho () attrition org>
Date: Wed, 3 Aug 2011 05:56:00 -0500 (CDT)



---------- Forwarded message ----------
From: InfoSec News <alerts () infosecnews org>

http://www.smdailyjournal.com/article_preview.php?id=164202

By Michelle Durand
Daily Journal Staff
August 02, 2011

Documents containing personal information of approximately 1,500 
Mills-Peninsula Health Services patients were removed from the facility 
over the course of a year and taken home by a mailroom employee, according 
to a hospital spokeswoman.

The worker, who has since been terminated, took the documents between 
November 2009 and September 2010. The Burlingame hospital learned of the 
breach June 17 when a relative of the employee discovered the documents at 
the worker?s home and returned them to the hospital.

The reason for the removal is murky.

"We don't believe they've been used for anything. We believe they just sat 
in a box," said Margie O'Clair, vice president of communications for 
Mills-Peninsula Health Services.

[...]
_______________________________________________
Dataloss-discuss Mailing List (dataloss-discuss () datalossdb org)
Archived at http://seclists.org/dataloss/
Unsubscribe at http://datalossdb.org/mailing_list

Learn encryption strategies that manage risk and shore up compliance.
Download Article 1 of CREDANT Technologies' The Essentials Series:
Endpoint Data Encryption That Actually Works
http://credant.com/campaigns/realtime2/gap-LP1/


Current thread: