This incident has 0 proposed changes. Know of details that have changed? Submit them Showing Incident 2782 To_xml

SUMMARY

Email inadvertently sent to wrong address exposes client names, address date of birth, Social Security numbers and medical information
Records 12,307
Record Types SSN NAA MED DOB
Breach Type Email
Data Family Electronic
Source Inside - Accidental
Organization Health Net
Other Affected/Involved Organizations None
Lawsuit? NO/UNKNOWN
Data Recovered? YES
Arrest? NO/UNKNOWN
Submitted By: pi3rce

TIMELINE

DateEvent
2009-05-28 Incident Occurred
2009-05-28 Incident Discovered By Organization
2009-07-10 Organization Reports Incident
2009-07-06 Organization Mails Notifications
None. Add Data Records Recovered
None. Add Data Lawsuit Filed
None. Add Data Arrest Made

SIMILAR INCIDENTS

recordsdateorganizations
27,000 2006-02-16 Blue Cross Blue Shield Florida
6,769 2010-01-06 Health Net
7,121 2012-04-20 University of Arkansas for Medical Sciences

SPONSOR

Zecurion Sponsors DataLossDB

Zecurion protects organizations worldwide, with more than 5,000 global deployments, using its award-winning software security solutions. Zecurion’s solutions create a “locked-vault” around data on servers, backup storage media, e-mail, peripheral devices and printers that both monitors and prevents unauthorized access.

MAP OF INCIDENT LOCATION

Address: Van Nuys, Los Angeles, CA, USA
Have a better address for this incident? Suggest it!

suggest a new reference

REFERENCES

suggest a new attachment

ATTACHMENTS

COSTS SUMMARY

Known Actual Costs

No known costs for this incident.

Estimated Costs

Ponemon Institute Direct Costs Estimate 1 $738,420.00
  1. Note that these estimates are based on the Ponemon Institute's 2009 direct costs figures from their 2009 Annual Study: Cost of a Data Breach. We multiply $60.00 by the number of records to obtain this figure. Keep in mind that depending on the breach, the direct costs are not always suffered by the breached organizations. In the case of credit card number breaches, the direct costs can often be suffered by banks and card issuers. Also note that this is only an estimate.

PRIMARY SOURCES

Primary Source ID: 2690

add details to this primary source Description
Massachusetts data breach: Health Net - vendor accidentally emails records to wrong address; within parent company email system. Containing names, address, Social Security numbers, date of birth and medical information.
FilenameSourceResearcher Incident IDs
20090710-health-net-MA.pdfMassachusetts Attorney Generald2d <a href='/incidents/show/2782'>2782</a>
RecordsFile DateUploadedUpdated
264 2009-07-10 2010-04-27 19 May 18:02
Excerpt
2690

V · 4 " Heath: Net of the NortheasL Inc. . W V , One Ear Mill Crossing V _ » _ no. sox 904 u _sne¤:¤¤, cr 06484-0944 ‘ i mw¢.healtl1netcom Health Net’ Joyce Mulholland Phone: (203) 225-8945 l Senior...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 2423

add details to this primary source Description
New Hampshire breach notification: Health Net - report sent electronically to agent with personal information of clients not associated with that agent. 1 NH resident exposed.
FilenameSourceResearcher Incident IDs
health_net20100106.pdfNew Hampshire Consumer Protection & Antitrust Bureaukirniki <a href='/incidents/show/2782'>2782</a>
RecordsFile DateUploadedUpdated
1 2010-01-06 2010-01-26 07 Jun 15:05
Excerpt
2423

7 §§»‘ January 5, 2010 The Honorabte tyfichaei A. Detaney 33 Clapitot Street Concord, NH 03301 Fax; {603) E?1-21 10 Dear iytr. rtttorney Generai; The purpose of this ietter is to inform you of a secu...

Click here for the Full Details | Download Raw PDF

COMMENTS

New Comment

captcha
Are you human?

Sponsored By: Rbs Tenable Zecurion
Use of the DataLossDB, and its exports, RSS feeds, reports, or other materials produced on this site by the Open Security Foundation requires authorization and potential licensing arrangements. For more information, please e-mail officers@opensecurityfoundation.org with a brief summary of how you would like to use this information; product, service, research, etc.
© 2005 - 2012, Open Security Foundation, All Rights Reserved.