HHS announces its first settlement in a ransomware case: Doctors’ Management Services

From HHS, this interesting press announcement: Today, the U.S. Department of Health and Human Services (HHS), Office for Civil Rights (OCR) announced a settlement under the Health Insurance Portability and Accountability Act (HIPAA) with Doctors’ Manag… Continue reading HHS announces its first settlement in a ransomware case: Doctors’ Management Services

Colorado GOP Wants Inquiry into Delayed Notification of Data Breach

David Migoya reports: Colorado House Republican leaders on Monday called for an investigation into why Colorado’s higher education agency allegedly failed to timely report a massive data breach this summer. In a two-page letter hand-delivered to … Continue reading Colorado GOP Wants Inquiry into Delayed Notification of Data Breach

Exclusive: Hackers claim they still have access to Clark County School District, and reveal more details about hack and stolen data

When reviews of data breaches in the education sector are written for 2023, they will almost certainly mention the 2022 attack on the Los Angeles Unified School District that wasn’t fully disclosed until 2023 and the Minneapolis Public Schools br… Continue reading Exclusive: Hackers claim they still have access to Clark County School District, and reveal more details about hack and stolen data

Hackers Accessed 632,000 Email Addresses at US Justice, Defense Departments

Ari Natter reports: A Russian-speaking hacking group obtained access to the email addresses of about 632,000 US federal employees at the departments of Defense and Justice as part of the sprawling MOVEit hack last summer, according to a report on the w… Continue reading Hackers Accessed 632,000 Email Addresses at US Justice, Defense Departments

Stanford University Investigating “Cybersecurity Incident”

Stanford University issued a statement yesterday: The security and integrity of our information systems are top priorities, and we work continually to safeguard our network. We are continuing to investigate a cybersecurity incident at the Stanford Univ… Continue reading Stanford University Investigating “Cybersecurity Incident”

Six months after data security incident, Fredericksburg Foot & Ankle Center notifies patients

On October 24, the Fredericksburg Foot & Ankle Center (FFAC) in Virginia began mailing breach notification letters to almost 15,000 patients affected by a cyberattack. The letter’s “What Happened?” section simply stated, “A… Continue reading Six months after data security incident, Fredericksburg Foot & Ankle Center notifies patients

Hackers escalate: leak 200k CCSD students’ data; claim to still have access to CCSD email system

Clark County School District (CCSD) in Nevada informed parents and employees that they became aware of a “cybersecurity incident” on October 5. Three weeks later, the district had not fully recovered from the attack and parents were complai… Continue reading Hackers escalate: leak 200k CCSD students’ data; claim to still have access to CCSD email system

MO: ‘Cyber attack’ hits Reeds Spring schools. Data breach includes Social Security numbers

Claudette Riley reports: The Reeds Spring school district has notified employees and families that it was the “victim of a sophisticated cyber attack” that involved the unauthorized access — and acquisition — of district and personal data. … Continue reading MO: ‘Cyber attack’ hits Reeds Spring schools. Data breach includes Social Security numbers

Exclusive: Clark County School District student data begins to leak; CCSD doesn’t comment

Tiffany Lane reports: Problems continue for Clark County School District families and staff about a week and a half after being notified of a cyber security incident that happened earlier this month. Some parents say they received an email Wednesday wi… Continue reading Exclusive: Clark County School District student data begins to leak; CCSD doesn’t comment