BreachExchange mailing list archives

HealthCare for Women server breached by hackers


From: Erica Absetz <erica () riskbasedsecurity com>
Date: Wed, 27 Mar 2013 10:11:05 -0400

http://www.southcoasttoday.com/apps/pbcs.dll/article?AID=/20130326/NEWS/303260334/1001

NEW BEDFORD — A computer server for SouthCoast medical provider
HealthCare for Women was hacked in January, potentially exposing
summaries of patient visits occurring from June 2012 to January 2013.

Patient names, addresses, telephone numbers and dates of birth could
also have been accessed.

HealthCare for Women specializes in gynecology and obstetrics and has
practices in New Bedford, Dartmouth and Mattapoisett.

Kathy Pelland, the group's privacy officer, said in a statement Monday
that the security breach was discovered at the end of January, at
which point the server was "immediately shut down."

"We have no evidence that this file has actually been opened or used
by the hackers," Pelland said. "We have alerted both local and state
law enforcement authorities and have notified patients whose
information may have been accessed."

Additional security measures have been put in place on the HealthCare
servers, Pelland said in the statement. HealthCare for Women
spokeswoman Ashley McCown would not elaborate on those measures.
_______________________________________________
Dataloss-discuss Mailing List (dataloss-discuss () datalossdb org)
Archived at http://seclists.org/dataloss/
Unsubscribe at http://datalossdb.org/mailing_list

Supporters:

Risk Based Security (http://www.riskbasedsecurity.com/)
Risk Based Security equips organizations with security intelligence, risk
management services and on-demand security solutions to establish
customized risk-based programs to address information security and
compliance challenges. 

Tenable Network Security (http://www.tenable.com/)
Tenable Network Security provides a suite of solutions which unify real-time
vulnerability, event and compliance monitoring into a single, role-based, interface
for administrators, auditors and risk managers to evaluate, communicate and
report needed information for effective decision making and systems management.


Current thread: