DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Privacy breach at Northern Inyo Hospital could result in criminal charges

Posted on October 18, 2013 by Dissent

From today’s Inyo Register in Bishop, California:

Local law enforcement has opened an investigation into the theft of medical records from Northern Inyo Hospital in a case that has shaken community members and NIH itself.

This past summer, hospital officials noticed that an employee in the records department had illegally obtained and was in possession of a patient’s medical file. Hospital Administrator John Halfen said Thursday that the employee was fired within hours of the discovery, but the ramifications of the theft are far-reaching.

Kudos to the hospital for promptly firing the employee upon discovery of the breach.

The patient’s response may seem a bit extreme. According to the paper, the patient testified that the breach has shaken her confidence in the healthcare system “and she may have to move out of the community.”

I’ve occasionally read surveys where patients have indicated that they might move as a result of a breach, and that really seems extreme. Unless you have a really stigmatizing medical or psychiatric condition and you’re worried about social or employment consequences, would you move  because of a breach – particularly when you see that a hospital detected the breach on its own and responded to it forcefully and immediately?

Perhaps when you are living in a small area (Bishop has a population of less than 4,000) with only one small hospital in your area, such breaches become more impactful.

That said, there’s no healthcare system that is totally immune to corrupt employees or insider breaches, and patients that move may find themselves dealing with a similar problem in their new location.

The paper says they’ll have more on this breach in tomorrow’s edition, so maybe something more will come out that may explain the patient’s reaction.


Related:

  • Two U.K. teenagers appear in court over Transport of London cyber attack
  • ModMed revealed they were victims of a cyberattack in July. Then some data showed up for sale.
  • JFL Lost Up to $800,000 Weekly After Cyberattack, CEO Says No Patient or Staff Data Was Compromised
  • Massachusetts hospitals Heywood, Athol say outage was a cybersecurity incident
  • Heritage Provider Network $49.99M Class Action Settlement
  • Integris Health Agrees to $30 Million Settlement Over 2023 Data Breach
Category: Health Data

Post navigation

← Ouidad notifies customers after customer data viewed or obtained
Executive Accounting Services notifies clients of security breach involving their personal and banking information →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • District of Massachusetts Allows Higher-Ed Student Data Breach Claims to Survive
  • End of the game for cybercrime infrastructure: 1025 servers taken down
  • Doctor Alliance Data Breach: 353GB of Patient Files Allegedly Compromised, Ransom Demanded
  • St. Thomas Brushed Off Red Flags Before Dark-Web Data Dump Rocks Houston
  • A Wiltshire police breach posed possible safety concerns for violent crime victims as well as prison officers
  • Amendment 13 is gamechanger on data security enforcement in Israel
  • Almost two years later, Alpha Omega Winery notifies those affected by a data breach.
  • Court of Appeal reaffirms MFSA liability in data leak case, orders regulator to shoulder costs
  • A jailed hacking kingpin reveals all about the gang that left a trail of destruction
  • Army gynecologist took secret videos of patients during intimate exams, lawsuit says

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • As shoplifting surges, British retailers roll out ‘invasive’ facial recognition tools
  • Data broker Kochava agrees to change business practices to settle lawsuit
  • Amendment 13 is gamechanger on data security enforcement in Israel
  • Changes in the Rules for Disclosure for Substance Use Disorder Treatment Records: 42 CFR Part 2: What Changed, Why It Matters, and How It Aligns with HIPAAs
  • Always watching: How ICE’s plan to monitor social media 24/7 threatens privacy and civic participation

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.