This incident has 0 proposed changes. Know of details that have changed? Submit them Showing Incident 3397 To_xml

SUMMARY

Appointment schedule with 97 patients' names, dates of birth, and reason for visit found in hospital parking lot.
Records 97
Record Types NAA MED DOB
Breach Type Lost Document
Data Family Physical
Source Inside - Accidental
Organization St. Thomas Elgin General Hospital
Other Affected/Involved Organizations None
Lawsuit? NO/UNKNOWN
Data Recovered? YES
Arrest? NO/UNKNOWN
Submitted By: Dissent

TIMELINE

DateEvent
2011-02-02 Incident Occurred
2011-02-02 Incident Discovered By Organization
2011-02-16 Organization Reports Incident
None. Add Data Organization Mails Notifications
None. Add Data Records Recovered
None. Add Data Lawsuit Filed
None. Add Data Arrest Made

SIMILAR INCIDENTS

recordsdateorganizations
192 2009-03-24 Massachusetts General Hospital
56 2010-05-31 North West London Hospitals NHS Trust

MAP OF INCIDENT LOCATION

Address: St Thomas, ON, Canada
Have a better address for this incident? Suggest it!

suggest a new reference

REFERENCES

suggest a new attachment

ATTACHMENTS

COSTS SUMMARY

Known Actual Costs

No known costs for this incident.

Estimated Costs

Ponemon Institute Direct Costs Estimate 1 $5,820.00
  1. Note that these estimates are based on the Ponemon Institute's 2009 direct costs figures from their 2009 Annual Study: Cost of a Data Breach. We multiply $60.00 by the number of records to obtain this figure. Keep in mind that depending on the breach, the direct costs are not always suffered by the breached organizations. In the case of credit card number breaches, the direct costs can often be suffered by banks and card issuers. Also note that this is only an estimate.

COMMENTS

by jkouns [Master Researcher] on 2011-03-03 (about 1 year ago)

Unclear on the exact number of records affected. Comment from article:

"He explained the forms didn't contain medical information about patients at STEGH, but instead was a schedule listing appointments from the previous day.

At least 15 entries had information regarding a patient's name, date of birth, reason for visit, telephone number and OHIP card number. The remainder had names, date of birth and reason for their visit."

New Comment

captcha
Are you human?

Sponsored By: Rbs Tenable Zecurion
Use of the DataLossDB, and its exports, RSS feeds, reports, or other materials produced on this site by the Open Security Foundation requires authorization and potential licensing arrangements. For more information, please e-mail officers@opensecurityfoundation.org with a brief summary of how you would like to use this information; product, service, research, etc.
© 2005 - 2012, Open Security Foundation, All Rights Reserved.