On December 4, 2023, Neurosurgeons Associates of New Jersey filed a U.S. data breach notification. The Office for Civil Rights of the Department of Health and Human Services was notified of the incident. In the notification, Neurosurgeons of New Jersey explains that an unauthorized user gained access to an employee’s email account, giving the hacker access to sensitive patient information, such as names, addresses, Social Security numbers, health insurance policy numbers, medical record numbers, patient account numbers, medical history, and litigation information . After completing its investigation, Neurosurgeons of New Jersey began sending data breach notification letters to all individuals whose information was affected by the recent data breach.
See also: Toronto Public Library (TPL): Various services offline due to cyberattack

The Neurosurgeons of New Jersey data breach was recently announced, and more information is expected soon. However, Neurosurgeons of New Jersey’s filing with the Office for Civil Rights of the U.S. Department of Health and Human Services provides some important information about what led to the breach. The company also posted a notice on its website titled “Data Security Incident.”
According to these sources, on October 4, 2023, New Jersey Neurosurgeons detected suspicious activity within a corporate email account. In response, New Jersey Neurosurgeons secured systems and then began working with external data security experts to investigate the incident and any impact on patient information.
The New Jersey neurosurgeon group says its investigation was unable to determine whether the hackers accessed or obtained any information from the affected email account; however, the data included confidential patient information.
See also: Akumin: Medical institution rejects patients after cyberattack
After being notified that sensitive consumer data was accessed by an unauthorized person, Neurosurgeons of New Jersey reviewed the compromised records to determine what information was leaked and which consumers were affected. The personal data that was leaked varies by individual and may include your name, address, social security number, health insurance number, medical record number, health history and treatment information.

On December 4, 2023, the New Jersey neurosurgeons filed a report about the incident with the Office of Civil Rights of the U.S. Department of Health and Human Services. Once the company’s investigation is complete, data breach letters should be sent to those affected by the recent data security incident. These letters should provide victims with a list of the data that was leaked.
One of the most important steps to protect against cyberattacks is training your staff. Staff must be aware of the different types of cyberattacks and how to recognize and respond to threats.
See also: General Electric: Investigating allegations of cyberattack and data leak
Additionally, implementing a strong IT security system is essential. This includes installing and updating antivirus, using firewalls and other protection mechanisms, and ensuring that all systems and applications are up to date.
It is also important to create a response plan in the event of a cyberattack. This should include identifying the attack, isolating the system to limit the damage, and recovering the data.
Finally, using multi-factor authentication and implementing strong password policies can go a long way in protecting against cyberattacks. Regular data backups are also crucial.
Source: jdsupra
