
Among the largest data thefts in the US...
Published: 11 April 2005 08:00 GMT
A California medical group is telling nearly 185,000 current and former patients that their financial and medical records may have been exposed following the theft of computers containing personal data.
Given the number of people affected, the theft from the San Jose Medical Group ranks among the largest in the nation. It follows a rash of other breaches that have raised concerns about the security of sensitive information.
The theft occurred after the San Jose Medical Group had copied patient and financial information from its secured servers to two local PCs, said Mike Patel, vice president of information technology for the San Jose Medical Group.
The data, some of which was encrypted, was part of a patient billing project and also part of the medical group's 2004 year-end audit, Patel noted.
On 28 March, during the early morning hours, the building was broken into and the medical group's two new Dell computers were stolen.
"We believe they were stolen because of the kind of computers they were and not because of the information," Patel said, noting that there have been no reports of patients' personal or financial information having been compromised.
Ironically, the medical group earlier this year began the process of encrypting its patient and financial information. It had not completed the process when the two PCs were stolen.
"We started to encrypt things this year because of [medical regulations], ID theft reports and security regulations," Patel said.
As a security measure, the medical group has historically stored its information only on the secured servers, where employees have only limited access to the computers and the information can only be accessed via the network.
Under the Security Breach Information Act of California, companies and organizations are required to notify people when their personal information may have been stolen.
The San Jose Medical Group began notifying patients on Tuesday, nine days after the break-in, Patel said. He noted that it took some time to gather the necessary information for notices and then distribute them to the thousands of patients who were affected.
Since the burglary, the medical group has taken steps to shore up the physical security of the building with surveillance cameras and other measures, Patel said.
The incident is certainly not the first of its kind. Last month, the University of California, Berkeley, warned 98,000 people that their personal information may have been exposed following the theft of a laptop from its admissions office.
That theft, however, paled in comparison to an incident at the university in August, when an attacker gained access to 1.4 million database records containing personal information in a social researcher's computer.
Other recent scares over data security include one at the Bank of America, which misplaced backup tapes containing the records of 1.2 million people, the bank said in February. Additionally, hackers broke into the databases of Seisint, a subsidiary of LexisNexis, gaining access to the records of 32,000 people, the company said last month.
Also in March, data warehousing company ChoicePoint confirmed that it had sold data to scammers, resulting in at least 750 cases of identity theft.
Dawn Kawamoto writes for CNET News.com
You will be part of a talented IT team of 5 so you will be exposed to all aspects of IT from You will have good experience supporting PCs and About ...
Based in Bolton 20-25phr, 3 month contract In accordance with the Employment Agencies and Employment Businesses Regulations 2003, this position is ...
Three Regional Business Management teams, located in San Jose, Singaporeand Dublin, provide support for new business opportunities and customer ...
Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.
Stories from the web...
Copyright © 2008 CBS Interactive Limited. All rights reserved. Top of page
Tim Ferguson Exclusive: Former MySQL boss Marten Mickos talks open source Why Microsoft could become one of the "biggest friends of open source" and why Oracle getting its hands on MySQL could be "one of the biggest open source coups ever"...
Naked CIO Naked CIO: Cloud computing more expensive than we thought? Smart IT leaders will examine the impact of how they pay for tech