This incident has 0 proposed changes. Know of details that have changed? Submit them Showing Incident 704 To_xml

SUMMARY

Employee downloads file containing sensitive information
Records 21,902
Record Types SSN NAA
Breach Type Unknown
Data Family Unknown
Source Outside
Organization UPS
Other Affected/Involved Organizations None
Lawsuit? NO/UNKNOWN
Data Recovered? NO/UNKNOWN
Arrest? NO/UNKNOWN
Submitted By: Anonymous

STOCK PRICE

Chart?chxt=x,y&chxl=0:|may-29|jun-7|jun-18|jun-27|jul-9|jul-18|&chxr=1,71.25,76.65&cht=lc&chd=t:71.34,71.34,71.56,71.56,71.97,71.97,72.36,72.36,72.27,72.27,71.72,71.72,71.62,71.62,71.25,71.25,72.32,72.32,72.48,72.48,71.25,71.25,72.14,72.14,73.95,73.95,74.05,74.05,73.32,73.32,73.0,73.0,72.91,72.91,73.37,73.37,72.85,72.85,73.29,73.29,73.15,73.15,73.56,73.56,73.62,73.62,73.0,73.0,73.33,73.33,73.2,73.2,73.75,73.75,73.7,73.7,74.4,74.4,74.04,74.04,74.33,74.33,74.76,74.76,75.15,75.15,75.53,75.53,75.52,75.52,75.2,75.2,75.84,75.84,75.01,75.01,74.54,74.54,74.68,74.68|72.91,72.91,73.49,73.49,73.51,73.51,73.79,73.79,73.92,73.92,73.53,73.53,72.88,72.88,71.60,71.60,72.41,72.41,72.48,72.48,71.71,71.71,72.79,72.79,73.15,73.15,73.62,73.62,73.53,73.53,73.66,73.66,72.66,72.66,73.11,73.11,72.16,72.16,71.93,71.93,71.70,71.70,72.35,72.35,72.32,72.32,72.20,72.20,72.98,72.98,73.24,73.24,73.26,73.26,73.50,73.50,73.57,73.57,72.53,72.53,72.94,72.94,74.33,74.33,74.56,74.56,74.42,74.42,74.41,74.41,74.26,74.26,74.59,74.59,73.68,73.68,74.04,74.04,72.57,72.57&chds=71.25,76.65&chco=008000,aaffff,ffaaff,ffffaa&chs=460x320&chm=v,990066,0,19,1

SIMILAR INCIDENTS

recordsdateorganizations
41,000 2006-06-29 National Institutes of Health Federal Credit Union (NIHFCU)
65,000 2007-06-27 Milwaukee PC
29,500 2009-02-06 Kaiser Permanente, Service Employees International Union - United Healthcare Workers West (SEIU-UHW)

TIMELINE

DateEvent
None. Add Data Incident Occurred
2007-02-02 Incident Discovered By Organization
2007-06-09 Organization Reports Incident
2007-06-11 Organization Mails Notifications
None. Add Data Records Recovered
None. Add Data Lawsuit Filed
None. Add Data Arrest Made

MAP OF INCIDENT LOCATION

Address: USA
Have a better address for this incident? Suggest it!

suggest a new reference

REFERENCES

suggest a new attachment

ATTACHMENTS

COSTS SUMMARY

Known Actual Costs

No known costs for this incident.

Estimated Costs

Ponemon Institute Direct Costs Estimate 1 $1,314,120.00
  1. Note that these estimates are based on the Ponemon Institute's 2009 direct costs figures from their 2009 Annual Study: Cost of a Data Breach. We multiply $60.00 by the number of records to obtain this figure. Keep in mind that depending on the breach, the direct costs are not always suffered by the breached organizations. In the case of credit card number breaches, the direct costs can often be suffered by banks and card issuers. Also note that this is only an estimate.

PRIMARY SOURCES

Primary Source ID: 343

add details to this primary source Description
Employee downloads personal information names, address, Social Security number and employee identification number by mistake
FilenameSourceResearcher Incident IDs
NH_UPS.pdfNew Hampshire Consumer Protection & Antitrust Bureaukirniki <a href='/incidents/show/704'>704</a>
RecordsFile DateUploadedUpdated
142 2007-06-08 2008-12-04 23 Sep 15:44
Excerpt
343

bt; hlcnlaske Parkwm;, NE _ `<>~°__ Ftilmitas, UA EGBES Qlunc S, 2007 M5.iK€1i,}’ A. Ayuttc Attmtmzy Gtzttcml Stattc mf `Ntzw Httmps hitt: 33 Capital Sttrcct Cmtctml, NH {E30} RE; Rtspurt of brcm...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 1468

add details to this primary source Description
During a routine information systems audit, UPS discovered that names, Social Security Numbers, employee identification numbers, and job classification and status information had been downloaded to a UPS computer from our network by an employee of UPS. The information appears to have been downloaded along with an unrelated software program that was believed to be the focus of the download. They did not find any evidence that the employee intended to access, misuse or disclose the private information.
FilenameSourceResearcher Incident IDs
2007-06-18_UPS.pdfHawaii Office of Consumer Protectiond2d <a href='/incidents/show/704'>704</a>
RecordsFile DateUploadedUpdated
173 2007-06-18 2009-03-18 05 Apr 17:04
Excerpt
1468

M ps legal Department i °"' 55 Glenlake Parkway, NE __ Atlanta, GA 30328 June l8, 2007 Mr. Stephen H. Levins Executive Director Hawaii Office of`Consumer Protection Leiopapa A Kamehameha Building 235...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 715

add details to this primary source Description
North Carolina Data Breach Notification : Employee downloaded unauthorised information to their computer containing personal information.
FilenameSourceResearcher Incident IDs
NC_UPS.pdfNorth Carolina Department of Justice, Consumer Protection Divisioncwalsh <a href='/incidents/show/704'>704</a>
RecordsFile DateUploadedUpdated
871 2007-06-21 2008-12-11 23 Sep 19:14
Excerpt
715

North Carolina Security Breach Reporting Form Pursuant to the Identity Theft Protection Act of 2005 Name of Business Owning or Licensing information Affected by the PLEASE SUBMIT FORM Breach: United...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 1161

add details to this primary source Description
Maine Data Breach Notification : UPS Employee downloaded personal information whilst downloading software.
FilenameSourceResearcher Incident IDs
ME_06182007_ups.pdfMaine Attorney Generalkirniki <a href='/incidents/show/704'>704</a>
RecordsFile DateUploadedUpdated
71 2007-06-18 2009-01-29 08 Jun 19:57
Excerpt
1161

legal Department i` 55 Glenlake Parkway, NE V Atlanta, CA 30328 June 18, 2007 i Mr. Steven Rowe S ` I Attorney General State of Maine A 6 State House Station Augusta, ME 04333 Dear Mr. Rowe: - We are...

Click here for the Full Details | Download Raw PDF

COMMENTS

New Comment

captcha
Are you human?

Sponsored By: Credant_200x51 Rbs Tenable Zecurion
Use of the DataLossDB, and its exports, RSS feeds, reports, or other materials produced on this site by the Open Security Foundation requires authorization and potential licensing arrangements. For more information, please e-mail officers@opensecurityfoundation.org with a brief summary of how you would like to use this information; product, service, research, etc.
© 2005 - 2012, Open Security Foundation, All Rights Reserved.