Exposure

Proskauer Rose Cyber Attack Left Sensitive Client Data Unguarded

Mahira Dayal reports: A data breach at Proskauer Rose exposed client data, including sensitive legal and financial information, the law firm confirmed Friday. “Our tech security team recently learned that an outside vendor that we retained to create an information portal on a third-party cloud-based storage platform had not properly secured it,” Joanne Southern,...

Service NSW breach exposes personal data affecting thousands of customers

7News reports: The personal information of Service NSW customers has been exposed to other logged-in individuals during a privacy incident, the agency says. An update released to the “My services” dashboard on March 20 resulted in the data breach, Service NSW chief executive officer Greg Wells said in an email to affected customers shared with AAP...

“A crucial learning experience.” – ICO calls for highest standards in HIV services after NHS Highland reprimand

From the U.K.’s Information Commissioner’s Office (ICO): NHS Highland reprimanded for a “serious” data breach amongst those accessing HIV services ICO calls for higher standards when protecting data of people living with HIV Service providers could be fined or reprimanded for exposing sensitive data The Information Commissioner’s Office (ICO) has issued a reprimand to NHS...

ChatGPT Suffers First Data Breach, Exposes Personal Information

Dom Nicastro reports: OpenAI’s ChatGPT has suffered its first major personal data breach. The breach came during a March 20 outage and exposed payment-related and other personal information of 1.2% of the ChatGPT Plus subscribers who were active during a specific nine-hour window, according to a blog post by OpenAI Friday, March 24. “In the hours before...

No need to hack when 682,000 medical records are leaking, Monday edition

On March 15, DataBreaches was contacted by a researcher who had found  a “bunch of medical docs.” The files included patient intake evaluations, laboratory results, medical records requests, insurance information forms, treatment or consultation notes, and other files you would expect to see in a patient’s records. The patients all appeared to be in...

Twitter takes legal action after source code leaked online

Dan Milmo reports: Twitter has revealed some of its source code has been released online and the social media platform owned by Elon Musk is taking legal action to identify the leaker. According to a court filing made on Friday, Twitter is demanding that GitHub, a code-sharing service, identifies who released on the platform...

Kroger notifies more than 82,000 Postal Prescription Service patients of mistaken information sharing

On March 10, Kroger’s Healthy Options program, Postal Prescription Services (PPS), issued a statement about a privacy breach. According to their statement, some PPS patients’ names and email addresses were erroneously shared with the grocery side of Kroger’s business due to an internal error. Kroger doesn’t state when the breach first occurred, but they...