Healthcare company Atrium Health has notified the U.S. Department of Health and Human Services (HHS) that a recently discovered data breach affects more than 585,000 people.
See also: Hackers breached the EazyDiner reservation platform

The HHS website does not provide any information about the breach, but the notice is likely related to an issue involving online monitoring technologies that existed on an Atrium Health patient portal between 2015 and 2019.
The company said an initial review of monitoring technologies, conducted in 2022, did not reveal any problems, but a more recent analysis of online technologies in the patient portal revealed potential information exposure.
Atrium said it is difficult to determine exactly what data was transmitted to third parties, but assumes that all users of the MyAtriumHealth or MyCarolinas between January 2015 and July 2019.
See also: IBM Engineering Systems flaw allows bypass of security restrictions
Depending on the user's browser, configuration, and actions, information such as IP, cookies, treatment or provider information, names, email addresses, phone numbers , and physical addresses.

It's worth noting that this isn't the only breach Atrium Health has disclosed in recent months. In mid-September, the company notified a subset of patients and employees after discovering that over a two-day period in April, someone had gained access to employee email accounts via phishing.
An investigation showed that the compromised email accounts stored information about certain patients and employees, including a wide range of personal, financial, and health information, such as social security numbers, bank account information, login credentials , and treatment/diagnosis details.
See also: Vulnerabilities expose mySCADA systems to remote compromise
Data breaches are a serious threat to information security. These attacks can lead to the disclosure or alteration of personal data, with serious consequences for privacy and security. It is therefore vital that we take precautions to protect data and be mindful of the security practices we follow in our digital lives.
Source: securityweek
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
