Tag Archives: state

Westin hotel in LA reports possible data breach

People who stayed at the Westin Bonaventure Hotel & Suites in Los Angeles last year and used their credit or debit card to eat there should keep a close eye on their bank statements.

Hotel officials disclosed Friday that the hotel's four restaurants, along with its valet parking operation, may have been hacked at some time between April and December, disclosing names, credit card numbers and expiration dates printed on customers' debit and credit cards.

via Westin hotel in LA reports possible data breach.

Indian banker charged with online funds fraud

A senior Indian banker has been arrested by Indian police for an online fraud in which hackers siphoned close to 2.7 million Indian rupees ($60,000) from a bank account, a senior police official of the Indian state of Tamil Nadu said on Wednesday.

via Indian banker charged with online funds fraud.

Blue Cross is sued over disclosing woman’s medical records | StarTribune.com

Blue Cross and Blue Shield of Minnesota, the state's largest health insurer, accidentally published a customer's personal medical information in a handbook prepared for 95,000 members of a popular health care plan, according to the woman's attorney.

via Blue Cross is sued over disclosing woman’s medical records | StarTribune.com.

Martin Memorial statement regarding conclusion of patient privacy breach investigation » TCPalm.com

Martin Memorial has completed an internal investigation regarding a patient privacy breach that occurred Feb. 3 at Martin Memorial Medical Center.

via Martin Memorial statement regarding conclusion of patient privacy breach investigation » TCPalm.com.

Breaches Affecting 500 or More Individuals

Breaches Affecting 500 or More Individuals

As required by section 13402(e)(4) of the HITECH Act, the Secretary must post a list of breaches of unsecured protected health information affecting 500 or more individuals. The following breaches have been reported to the Secretary.

The Methodist Hospital

State: Texas

Approx. # of Individuals Affected: 689

Date of Breach: 1/18/10

Type of Breach: Theft

Location of Breached Information: Computer

via Breaches Affecting 500 or More Individuals.

Can Validating PCI Compliance Increase Your Vulnerability To A Breach?

PCI validation is not the same as PCI compliance. Validation is an assessment or judgment based on evidence. It is something you do once a year. Compliance is different. It is a state where you, the merchant, actually meet all the rules and procedures every day.

via StorefrontBacktalk » Blog Archive » Can Validating PCI Compliance Increase Your Vulnerability To A Breach?.

Connecticut goes after Health Net for breach

The state of Connecticut is suing health insurer Health Net, following a data breach that saw 446 000 Connecticut residents’ records compromised, it said yesterday.

via Infosecurity USA – Connecticut goes after Health Net for breach.

SEC Approves Enhanced Disclosure About Risk, Compensation and Corporate Governance

In particular, the new rules require disclosures in proxy and information statements about:

* The relationship of a company’s compensation policies and practices to risk management.

via Press Release: SEC Approves Enhanced Disclosure About Risk, Compensation and Corporate Governance; 2009-268; Dec. 16, 2009.

Two Data Security Breaches Give State Attorneys General a Chance to Exercise Their New HIPAA Powers

Connecticut Attorney General Richard Blumenthal (D) has emerged as possibly the first AG to take on a HIPAA investigation, and Arizona’s AG may also be pursuing a similar course. The larger of the two breaches that have come to the AGs’ attention was experienced by Health Net, Inc., which lost a portable external hard drive containing seven years of data for 446,000 Connecticut residents. The lost data came from 1.5 million individuals in total, who also hailed from New Jersey and New York.

via Two Data Security Breaches Give State Attorneys General a Chance to Exercise Their New HIPAA Powers.

State Department FISMA report is 95,000 pages

Every three years, agencies submit reports to the Office of Management and Budget documenting their inventory of network security vulnerabilities and the steps they’re taking to fix them.

The detailed reports — typically produced at a cost of tens of millions of dollars — often fill dozens of binders; the State Department’s last report was 95,000 pages.

John Streufert, State’s chief information security officer, printed one last month to bring to a Senate hearing. It took four days to print. “And it was outdated by the time I finished printing it,” he said.

via State Department – FederalTimes.com.