• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
Cyber Security News

Washington Health District Suffers Another Data Breach

You are here: Home / General Cyber Security News / Washington Health District Suffers Another Data Breach
March 28, 2022

A Health District in the State of Washington has made its 2nd information breach announcement of 2022. 

The two knowledge breaches at the Spokane Regional Wellness District (SRHD) happened when staff fell victim to phishing attacks. 

✔ Approved Seller From Our Partners
Mullvad VPN Discount

Protect your privacy by Mullvad VPN. Mullvad VPN is one of the famous brands in the security and privacy world. With Mullvad VPN you will not even be asked for your email address. No log policy, no data from you will be saved. Get your license key now from the official distributor of Mullvad with discount: SerialCart® (Limited Offer).

➤ Get Mullvad VPN with 12% Discount


On January 24, the district confirmed that private details may have been compromised when an unauthorized unique compromised an employee’s email account on December 21 2021. An interior investigation concluded that when no files appeared to have been opened, accessed, or downloaded, the attacker may have ‘previewed’ clients’ secured health info (PHI).

The likely disclosure may have impacted 1,058 persons and associated facts including names, dates of beginning, case quantities, counselor’s names, take a look at benefits and dates of urinalysis, medication acquired and date of past dose.

In a prepared assertion issued in January, SRHD deputy administrative officer Lola Phillips claimed that the district experienced secured the email account and bolstered “cybersecurity training with personnel that consists of the use of multi-factor authentication and doing more testing on the system.”

In spite of these efforts, SRHD lately documented a second data breach induced by the opening of a phishing email by a district personnel on February 24. This most current breach may well have uncovered the information and facts of 1,260 men and women from two unidentified departments in the district.

Data which may well have been associated in the 2nd breach incorporates names, dates of birth, phone numbers, remedies, clinical problems and test success. 

JupiterOne’s field security director, Jasmine Henry, told Infosecurity Magazine that healthcare is amid the most targeted industries mainly because healthcare corporations have a substantial volume of delicate information which cyber-criminals can offer for revenue. 

“Stolen patient documents can promote for $250 on the dark web, in contrast to just $5.40 for payment data,” claimed Henry. “In addition, overall health info is additional worthwhile for the reason that it is reasonably everlasting…an unique simply cannot easily terminate their health and fitness record like a stolen credit score card quantity.”

Lookout’s senior manager of security methods, Hank Schless, mentioned preserving data was a rough task for healthcare businesses. 

“Detecting and safeguarding versus these phishing strategies and malicious payloads as they’re becoming constructed demands a massive volume of security telemetry,” reported Schless.

He advised corporations to “make a stable security posture based mostly on a zero-belief philosophy” by “securing personnel cellular endpoints as very well as your cloud and non-public apps.”


Some areas of this write-up are sourced from:
www.infosecurity-magazine.com

Previous Post: «Cyber Security News US Comms Regulator Deems Kaspersky a National Security Risk
Next Post: Critical Sophos Security Bug Allows RCE on Firewalls critical sophos security bug allows rce on firewalls»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • BREAKING: 7,000-Device Proxy Botnet Using IoT, EoL Systems Dismantled in U.S. – Dutch Operation
  • OtterCookie v4 Adds VM Detection and Chrome, MetaMask Credential Theft Capabilities
  • Initial Access Brokers Target Brazil Execs via NF-e Spam and Legit RMM Trials
  • Deploying AI Agents? Learn to Secure Them Before Hackers Strike Your Business
  • Malicious npm Packages Infect 3,200+ Cursor Users With Backdoor, Steal Credentials
  • Beyond Vulnerability Management – Can You CVE What I CVE?
  • Google Rolls Out On-Device AI Protections to Detect Scams in Chrome and Android
  • Chinese Hackers Exploit SAP RCE Flaw CVE-2025-31324, Deploy Golang-Based SuperShell
  • 38,000+ FreeDrain Subdomains Found Exploiting SEO to Steal Crypto Wallet Seed Phrases
  • SonicWall Patches 3 Flaws in SMA 100 Devices Allowing Attackers to Run Code as Root

Copyright © TheCyberSecurity.News, All Rights Reserved.