Chronology of Data Breaches
Security Breaches 2005 - Present

Posted Date: April 20, 2005
Updated Date: December 31, 2013

Is this your first visit to our Chronology of Data Breaches?

  • Read our FAQ about what we define as a breached record, how we calculate the "total" records breached, our data sources, state breach notice laws, studies and other resources

  • Learn how to use our Chronology and take advantage of its sophisticated search and sort features

  • Get our RSS Feed to see when we add new breaches to the list

What would you like to do?

Chronology of Data Breaches

Custom Sort
Select your desired results. Then click "Go!"

Click or unclick the boxes then select go.


Select features, then click GO.



Help Guide

Can't find the sort feature you're looking for? Click here to download a CSV file of the data breach list as it exisits today.
Breach Total
815,842,526 RECORDS BREACHED
(Please see explanation about this total.)
from 4,489 DATA BREACHES made public since 2005

Save or Print PDF of Entire Breach List including introduction.Save or Print a PDF of Entire Breach List (including introductory FAQ)

Filter breach list before saving or printing PDF. Conduct a search of the Chronology using its sorting features, and Save or Print a PDF of your search results (Select filters)

If you do not have access to PDF, you can print the Chronology in landscape view.

Date Made Publicsort icon Name Entity Type
February 22, 2013 Microsoft
Redmond, Washington
BSR HACK

Unknown

Microsoft's official notice can be found here: https://blogs.technet.com/b/msrc/archive/2013/02/22/recent-cyberattacks.aspx?Redirected=true

Microsoft security discovered that a number of employee devices were affected by malware.  The employees had visited unsafe websites and downloaded material. It is unclear if the employee devices spread the infection to other areas of Microsoft's network, but Microsoft found no evidence of customer data being affected. Facebook, Twitter, and Apple were affected by a similar issue around the same time.

 
Information Source:
Media
records from this breach used in our total: 0

February 21, 2013 Zendesk
San Francisco, California
BSR HACK

Unknown

An official notice can be found here: http://www.zendesk.com/blog/weve-been-hacked.

Those with questions may call (415) 287-9976.

A hacker accessed Zendesk information that was online.  Three clients who use Zendesk to store information had user lists downloaded by the hacker.  Users who contacted those clients for support may have had their email addresses and the subject lines of those email addresses accessed.

UPDATE (02/22/2013): Tumblr, Twitter, and Pinterest were the affected clients. Twitter let users know that emails, phone numbers, Twitter usernames, and any other information that was provided to Twitter may have been exposed.  Passwords were not compromised.

 
Information Source:
Media
records from this breach used in our total: 0

February 21, 2013 Polk County School District
Bartow, Florida
EDU DISC

200

Students who paid tuition for education programs may have had their 1098T tax forms sent to the incorrect address.  Between 150 and 200 people out of 2,000 were sent to the wrong address because a group of the tax forms were placed in envelopes without being properly separated.  Some people received the forms of several people while others never got their tax forms.  The district implemented a new step of sampling some of the envelopes in order to review the process before completing an entire batch.

 
Information Source:
Media
records from this breach used in our total: 200

February 20, 2013 Mid-Florida Urological Associates
Orlando, Florida
MED INSD

Unknown

A dishonest employee misused patient information in order to claim them as her children and receive insurance compensation.  The dishonest employee was charged with insurance fraud and ID theft.

UPDATE (02/22/2013): Orlando Health patient records were accessed.  The Orlando Health hospitals include MD Anderson Cancer Center Orlando, Orlando Regional Medical Center, Winnie Palmer Hospital for Women and Babies, Dr. P. Phillips Hospital, Arnold Palmer Hospital for Children, South Seminole Hospital, South Lake Hospital, and Health Center Hospital.

 
Information Source:
PHIPrivacy.net
records from this breach used in our total: 0

February 20, 2013 Central Hudson Gas & Electric
Poughkeepsie, New York
NGO HACK

110,000

Central Hudson learned of a cyber attack that occurred over President's Day weekend.  Customers were notified the day after the holiday and encouraged to monitor their bank accounts and credit reports.  Customer banking information and other personal information may have been accessed during the attack.

 
Information Source:
Databreaches.net
records from this breach used in our total: 110,000

February 19, 2013 Hotusa Group
,
BSR HACK

Unknown

Hotusa Group is headquartered in Barcelona, Spain.

A server breach or other incident related to credit cards may have affected people who used their American Express cards at locations linked to Hotusa Group's servers.  Account numbers, names, credit card expiration date, and other credit card information may have been exposed for American Express and other cards. The incident occurred on August 24, 2012.

 
Information Source:
California Attorney General
records from this breach used in our total: 0

February 19, 2013 Kork and Keg
Greencastle, Indiana
BSR HACK

Unknown

Fraudulent activity on the accounts of DePauw University students was linked to Kork and Keg.  It is not clear how the store's payment system was compromised; however it was a common link among those who had their accounts breached.  Kork and Keg did not make a statement.

 
Information Source:
Media
records from this breach used in our total: 0

February 19, 2013 Apple
Cupertino, California
BSR HACK

Unknown

Apple detected malware on employee computers.  A small number of employee computers had been affected after their users went to a website for software developers.  Facebook, Microsoft, and Twitter experienced the same breach around the same time.

 
Information Source:
Media
records from this breach used in our total: 0

February 18, 2013 Express Scripts, Ernst & Young
St. Louis, Missouri
BSF DISC

Unknown

A partner at Ernst & Young is accused of sneaking into the headquarters of Express Scripts Holding Co.  It is not clear how the Ernst & Young partner got into the headquarters, but it is believed that he emailed over 20,000 pages of data to a personal account.  Express Scripts Holding Co. accused Ernst & Young of stealing the information in order to develop its health care division. Express Scripts Holding filed a lawsuit; the accused partner is no longer employed by Ernst & Young.

 
Information Source:
Media
records from this breach used in our total: 0

February 17, 2013 Sierra View District Hospital
Porterville, California
MED HACK

Unknown

The Information Technology Department at Sierra View District Hospital detected unusual activity on its computer network.  Patient information may have been affected and the investigation is ongoing.

 
Information Source:
PHIPrivacy.net
records from this breach used in our total: 0

February 17, 2013 Heyman HospiceCare, Floyd Medical Center
Rome, Georgia
MED PORT

Unknown

The theft of a password-protected laptop from an employee's car may have resulted in the exposure of patient information.  The theft occurred on January 4, 2013 and was reported immediately.  Patients who were treated between July 1, 2006 and January 3, 2013 may have had their names, Social Security numbers, addresses, phone numbers, dates of birth, insurance policy numbers, diagnoses, visit notes, physician names, caregiver names, and advance directives exposed.

 
Information Source:
PHIPrivacy.net
records from this breach used in our total: 0

February 15, 2013 Walgreens
Richmond, Kentucky
BSR INSD

Unknown

A Walgreens pharmacist used patient information to obtain prescriptions for powerful drugs.  The fraudulent activity occurred between April 2011 and January 2012.  The dishonest pharmacist pleaded guilty to aggravated identity theft, wire fraud, and fraudulently acquiring controlled substances on November 19, 2012.

She was sentenced to 25 months in prison and one month of supervised release.

 
Information Source:
PHIPrivacy.net
records from this breach used in our total: 0

February 15, 2013 Facebook
Menlo Park, California
BSO HACK

Unknown

Facebook's official notification can be found here: http://www.facebook.com/notes/facebook-security/protecting-people-on-facebook/10151249208250766

Facebook discovered that hackers had exploited a vulnerability and accessed unspecified data.  Facebook found no evidence that Facebook user data was compromised.  Malware was installed on a number of employee laptops after a small number of them visited a mobile developer website that turned out to be unsafe. Microsoft, Twitter, and Apple were affected by the same issue around the same time.

 
Information Source:
Media
records from this breach used in our total: 0

February 14, 2013 Froedtert Health
Milwaukee, Wisconsin
MED HACK

43,000 (less than 3% contained SSNs)

A computer virus was discovered on an employee's work computer account on December 14, 2012.  One of the files on the employee's computer contained patient names, addresses, telephone numbers, dates of birth, medical record numbers, names of health insurers, diagnoses, and other clinical information.  A limited number of Social Security numbers were also exposed.

 
Information Source:
PHIPrivacy.net
records from this breach used in our total: 800

February 14, 2013 FCC, Emergency Alert System
Washington, District Of Columbia
GOV HACK

Unknown

The Emergency Alert Systems (EAS) of several TV stations nationwide were hacked and alerted people to a fictitious zombie attack.  The FCC ordered local broadcasters to change their passwords on EAS equipment and check the security of firewalls before resuming normal internet connections.

 
Information Source:
Media
records from this breach used in our total: 0

February 14, 2013 Häagen-Daz
Tampa, Florida
BSR HACK

Unknown

Anyone who made a purchase at the Häagen-Daz inside the food court in International Plaza since April of 2012 may have been affected by identity theft.  A flash drive that contained key-logger software was connected to a register at the store.  It recorded payment card transactions and allowed thieves to make counterfeit credit cards.  Two men were arrested in June of 2012 for using fraudulent card information and that information was later linked to the Häagen-Daz shop.

 
Information Source:
Media
records from this breach used in our total: 0

February 13, 2013 University of North Carolina
Chapel Hill, North Carolina
EDU HACK

3,500

A cyber attack on two servers resulted in the exposure of employee information.  The servers were at the UNC Lineberger Comprehensive Cancer Center.  Employees, contractors, and visiting lecturers at the Lineberger Center may have had their Social Security numbers or passport numbers exposed.  The breach was discovered in May of 2012 and notifications were sent in December of 2012.  Fewer than 15 people who were subjects in research studies were also affected by the breach.

 
Information Source:
Media
records from this breach used in our total: 3,500

February 13, 2013 Sinai Medical Center of Jersey City LLC
Jersey City, New Jersey
MED INSD

Unknown

A pediatrician misused patient information in order to defraud Medicaid of nearly one million dollars.  The pediatrician owned Sinai Medical Center and billed Medicaid for wound repairs and other procedures that were never performed.  Police arrested the dishonest pediatrician on January 16, 2013.  

 
Information Source:
PHIPrivacy.net
records from this breach used in our total: 0

February 13, 2013 Los Angeles Times, OffersandDeals.latimes.com
Los Angeles, California
BSO HACK

Unknown

The Los Angeles Times learned that a segment of its website housed malicious code for six weeks.  The subdomain OffersandDeals.latimes.com redirected visitors to a malicious website.  The website then used code to receive compensation for web traffic.  The compromise appears to have occurred sometime before December 23, 2012.  An LA Times spokesperson initially responded to the breach by claiming that a glitch in Google's display ad exchange had caused a malicious script warning rather than actual malicious script.

 
Information Source:
Media
records from this breach used in our total: 0

February 13, 2013 Jawbone
San Francisco, California
BSR HACK

Unknown

Hackers were able to access Jawbone's MyTALK customer accounts for several hours.  Names, email addresses, and encrypted passwords were exposed.  Any customers who were affected received an email warning them to reset their passwords.

 
Information Source:
Media
records from this breach used in our total: 0

February 12, 2013 Palm Beach County Health Department
Palm Beach, Florida
MED INSD

2,800

Patients with questions may call (561) 671-4014

A senior desk clerk was arrested for obtaining and releasing patient information for identity theft purposes.  The dishonest employee took home client lists with names, Social Security numbers, and dates of birth.  Patients born between 1991 and 1996 may have had their personal information misused.

 
Information Source:
PHIPrivacy.net
records from this breach used in our total: 2,800

February 12, 2013 J.P. Morgan Chase, Capital One
New York, New York
BSF CARD

6,000

ATMs in New Jersey, Illinois, and Wisconsin were also compromised.

Two men face charges of conspiracy to commit bank fraud, conspiracy to commit access device fraud, and aggravated identity theft after being indicted for attaching skimming devices to ATMs in New York, New Jersey, Illinois, and Wisconsin.  At least nine other people are believed to have participated in the bank fraud scheme.  Over 6,000 J.P. Morgan Chase and Capital One bank accounts were defrauded for over $3 million.

 
Information Source:
Media
records from this breach used in our total: 6,000

February 11, 2013 Crafts Americana Group, Inc. (Knitpicks.com, ArtistsClub.com, ConnectingThreads.com)
Columbus, Ohio
BSR DISC

Unknown

Customers who had credit card numbers on file after using them at Knitpicks.com, ArtistsClub.com, or ConnectingThreads.com may have had their information exposed.  A file on the Crafts Americana Group, Inc. servers was accessible for a period of time before being removed on January 25, 2013.  The file contained names, credit card numbers, addresses, and phone numbers.

 
Information Source:
California Attorney General
records from this breach used in our total: 0

February 11, 2013 Lee Miller Rehab Associates
Baltimore, Maryland
MED STAT

10,480 (No SSNs or financial information reported)

A network server was stolen or discovered stolen on January 15, 2012.  The incident appeared on the HHS website in February of 2013.

 
Information Source:
HHS via PHIPrivacy.net
records from this breach used in our total: 0

February 11, 2013 American HomePatient Inc., LifeGas
Brentwood, Tennessee
MED PORT

1,103 (No SSNs or financial information reported)

A laptop was stolen or discovered stolen on October 11, 2012.  The incident appeared on the HHS website in February of 2013.

 
Information Source:
HHS via PHIPrivacy.net
records from this breach used in our total: 0

February 11, 2013 Riderwood Village
Baltimore, Maryland
MED PORT

3,230 (No SSNs or financial information reported)

Five laptops were stolen during the weekend of November 17, 2012.  They did not contain Social Security numbers and did contain unspecified personal information of patients.  A notice about the incident was sent on January 18, 2013 and the breach appeared on the HHS website in February of 2013.

 
Information Source:
HHS via PHIPrivacy.net
records from this breach used in our total: 0

February 8, 2013 Talk Fusion
Brandon, Florida
BSO HACK

Unknown

A computer network attack resulted in the exposure of customer information.  The cyber attack was discovered on December 13, 2012 and affected customer databases with names, Social Security numbers, credit and debit card numbers, payment card expiration dates, payment card security codes, addresses, telephone numbers, dates of birth, and mothers' maiden names may have been exposed.

 
Information Source:
California Attorney General
records from this breach used in our total: 0

February 8, 2013 United States Federal Reserve, Grand Banks Yachts
Washington, District Of Columbia
GOV HACK

Unknown

The hacking group known as Anonymous claimed responsibility for a hack of the Alabama Criminal Justice Center and indicated that they had access to US Federal Reserve servers. Some internal documents were also exposed.  The hack attack was a response to the US Federal Reserve's reaction, or failure to react, to the February 4 hack of the Alabama Criminal Justice Center.  Anonymous released a document showing that they had extensive access to US Federal Reserve servers and internal documents.  Anonymous hacked into the Grand Banks Yachts website and used it to host a file that contained the document.

UPDATE (08/23/2013): Federal Reserve employee data was posted on a website.  Phone numbers, emails, and other Federal Reserve employee information was placed on a publicly accessible spreadsheet.  Anonymous claims to have full details of every Federal Reserve Bank of America employee.  The information may have been from the breach in February.  

 
Information Source:
Media
records from this breach used in our total: 0

February 7, 2013 THORLO
Statesville, North Carolina
BSR HACK

Unknown

Hackers were able to access customer credit card information stored on computer servers.  The cyber attack affected customers who made purchases on www.thorlo.com between November 14, 2012 and January 22, 2013.  Credit card numbers, credit card expiration dates, credit card security codes, names, and contact information were exposed. 

 
Information Source:
California Attorney General
records from this breach used in our total: 0

February 7, 2013 Schneider-Electric
Palatine, Illinois
BSO DISC

Unknown

A vendor's mailing error resulted in the exposure of employee Social Security numbers.  Call for Candidacy letters were mailed sometime around January 16 that had Social Security numbers, names, and addresses visible through the address window of the letter.  

 
Information Source:
California Attorney General
records from this breach used in our total: 0

February 7, 2013 Wayne Memorial Hospital
Honesdale, Pennsylvania
MED PORT

1,182 (No SSNs or financial information reported)

An unencrypted disc that contained patient information was lost in transit.  The disc had names, Medicare account numbers, and outstanding account balances from patients who visited the Honesdale hospital between 2007 and 2012.  A legal envelope that contained the disc was mailed on November 28 and arrived at Novitas Solutions in Pittsburgh in a cardboard box without the disc. 

 
Information Source:
PHIPrivacy.net
records from this breach used in our total: 0

February 7, 2013 McDonald's, Shogun Japanese Steakhouse, Krystal, Polished Nail Salon
, Georgia
BSR INSD

Unknown

Dishonest employees from multiple cities and states were involved. The location listed is the state where many fraudulent purchases took place.

Eleven people were charged with participating in an identity theft ring.  Some of the defendants obtained customer credit and debit card information by using skimmers at their places of employment.  Others used the stolen information to make fraudulent payment cards.  The ring was in action between June of 2009 and November of 2010.

 
Information Source:
Dataloss DB
records from this breach used in our total: 0

February 6, 2013 Bashas'
Chandler, Arizona
BSR HACK

Unknown

The location of the breach is listed as the corporate headquarters of Bashas'

Bashas' online systems suffered an online breach.  Customers in Lake Havasu City and Pinal County who entered their credit and debit card information online have been affected.  All customers are being warned to check their payment card transactions for suspicious activity.

 
Information Source:
Dataloss DB
records from this breach used in our total: 0

February 5, 2013 Boca Raton Regional Hospital
Boca Raton, Florida
MED INSD

Unknown

Eight people were charged for participating in an identity theft ring.  One of the members was employed as a scheduler at Boca Raton Regional Hospital.  She passed along patient information in exchange for payments.  One member allegedly filed 57 fraudulent tax returns with the stolen information in attempt to get $306,720 in refunds.  Another member is accused of filing 75 fraudulent returns for $750,469 in refunds.

UPDATE (07/30/2013): The dishonest employee was convicted of unauthorized disclosure of medical records, using stolen Social Security numbers to file fraudulent tax claims, and conspiracy to commit false claims.  She was sentenced to 18 months in prison and ordered to pay $15,795 in restitution to the IRS.  A co-defendant was sentenced to 40 months for her role in filing fraudulent tax returns and stealing patient information.

 
Information Source:
PHIPrivacy.net
records from this breach used in our total: 0

February 5, 2013 U.S. Department of Energy
Washington, District Of Columbia
GOV HACK

Unknown

The U.S. Department of Energy discovered that unidentified malicious activity had been detected on 14 servers and 20 workstations in January.  The personal information of several hundred employees was exposed.  The U.S. Department of Energy had known about the need to patch computers, network ssytems, and servers since 2012.

 
Information Source:
Media
records from this breach used in our total: 0

February 4, 2013 Alabama Criminal Justice Information Center
Montgomery, Alabama
NGO HACK

4,000 (No SSNs or financial information reported)

Information related to over 4,000 American bank executive accounts was exposed by hackers.  Hackers placed an Alabama Criminal Justice Information Center spreadsheet with the login information, credentials, contact information, and IP addresses of bank executives online.

 
Information Source:
Dataloss DB
records from this breach used in our total: 0

February 3, 2013 Premier Tax
, Alabama
BSF INSD

Unknown

The area of Alabama where the breach occurred is unclear.

Six people who worked in tax preparation were charged with fraud and filing false tax returns in March of 2012.  Over 1,000 false tax returns were filed between October 2009 and April 2012.  The fraudulent returns totalled more than $1.7 million.  

UPDATE (01/29/2013): Two others were linked to the conspiracy and charged.  One of them was an employee of an unnamed Alabama state agency. She was able to access a state database of personal information and provide it to others in the identity theft ring.

 
Information Source:
Databreaches.net
records from this breach used in our total: 0

February 2, 2013 River Falls Medical Clinic
River Falls, Wisconsin
MED PHYS

2,400 (unknown number of SSNs)

River Falls Medical Clinic officials reported a burglary during the summer of 2012.  The equipment and paper documents that were stolen were recovered by police on November 28.  An employee of a cleaning service that subcontracted with the Clinic is the main suspect.  The items were found in the employee's home and he was charged with felonies associated with theft and drug possession.  It is believed that the documents were intended to be shredded.  They contained patient names, dates of birth, patient account and billing account information, diagnosis codes, insurance information, account numbers, medical chart numbers, and scheduling information.  An unspecified number of patients also had their Social Security numbers, home addresses, and phone numbers exposed.

 
Information Source:
PHIPrivacy.net
records from this breach used in our total: 0

February 2, 2013 Twitter
San Francisco, California
BSO HACK

250,000 (no SSNs or financial information exposed)

Online attackers were able to access the usernames, email addresses, session tokens, and encrypted passwords of 250,000 users.  Twitter notified affected users and told them to create a new password.  Anyone who used the same password and username or email combination for other sites is encouraged to change the password on other sites as well.

UPDATE (03/11/2013): Facebook, Microsoft, and Apple were all affected by a similar breach around the same time.

 
Information Source:
Media
records from this breach used in our total: 0

February 1, 2013 Antioch Unified School District
Antioch, California
EDU DISC

Unknown

A document with sensitive Worker's Compensation claim information was accidentally sent out with an email to a limited number of Antioch Unified School District employees.  Social Security numbers and other information related to current and former employees that reported injuries were exposed.  The incident occurred on January 18 and people who received the email were instructed to remove and destroy any saved information contain in the email. Those who received the email were also instructed to provide written verification that they had removed and destroyed the information.

 
Information Source:
California Attorney General
records from this breach used in our total: 0

February 1, 2013 Tallahassee Memorial HealthCare
Tallahassee, Florida
MED INSD

124

A former Tallahassee Memorial HealthCare food service employee was indicted on 31 counts of filing false tax returns, wire fraud, false claims, and aggravated identity theft.  He and two others are believed to have participated in a conspiracy that led to $818,000 in fraudulent claims.  The employee worked for Tallahassee Memorial HealthCare for three years.  He gathered patient names and dates of birth from food tray receipts when he delivered food to the rooms of patients in August of 2011 and stole emergency room data sheets from the trash. The information was then passed to the two others who participated in the conspiracy.

 
Information Source:
PHIPrivacy.net
records from this breach used in our total: 124

February 1, 2013 Central Laborers' Pension Fund, Central Laborers' Welfare Fund, Central Laborers' Annuity Fund
, Illinois
BSF PORT

Unknown

A home burglary resulted in the theft of a CD that contained the information of over 30,000 beneficiaries.  The CD contained names, Social Security numbers, and dates of birth and was taken from the home of an accountant at an unnamed counting firm.  The three funds sued the accounting firm for $200,000 to cover the cost of credit monitoring and insurance. 

 
Information Source:
Databreaches.net
records from this breach used in our total: 0

January 31, 2013 Bank of Prairie du Sac
Prairie du Sac, Wisconsin
BSF HACK

200

Customers were affected by an ATM hacking scheme. A skimming device is believed to have been placed on the bank's ATM at a food store.  A suspect was arrested after being seen using stolen card information at an ATM.

 
Information Source:
Dataloss DB
records from this breach used in our total: 200

January 31, 2013 Silver Star Motors
Cortland, Illinois
BSR INSD

25

The owner of Silver Star Motors was charged with seven counts of identity theft and may have been involved in 25 cases of identity theft.  Customer information was used to defraud lending companies associated with the used-car dealership.

UPDATE (02/13/2013): At least 44 people have had their information misused. The dishonest owner also operated Edge Auto Sales at one time.

 
Information Source:
Dataloss DB
records from this breach used in our total: 25

January 30, 2013 The New York Times
New York, New York
BSO HACK

Unknown

The New York Times' computer system was hacked after Chinese government officials warned the Times about consequences for investigating the wealth of government family members.  The Times began monitoring its system closely on October 24 and noticed unusual activity on October 25 when an article about the wealth of a Chinese official's family was published.  The breach began on September 13 and was allowed to continue until January so that the hackers' behavior could be studied.  It appears that the passwords of every Times employee were compromised and 53 Times employees had their personal computers accessed.  The 53 employees were located outside of the United States and appear to have been the ones who may have covered the Chinese stories.

 
Information Source:
Media
records from this breach used in our total: 0

January 30, 2013 Police Department of Littleton, Massachusetts
Littleton, Massachusetts
GOV DISC

100

A police activity log for the period of January 7 through January 13 was published on the Littleton department's website. Someone forgot to remove personal details from the log and the sensitive information was available online for 10 days.  Names, Social Security numbers, dates of birth, and addresses, were available between January 14 and January 24.

 
Information Source:
Media
records from this breach used in our total: 100

January 29, 2013 North Los Angeles County Regional Center (NLACRC)
Van Nuys, California
MED PORT

Unknown

The November 13, 2012 theft of a laptop resulted in the exposure of consumer information.  Names, addresses, phone numbers, dates of birth, residential information, and medical information may have been exposed.

 
Information Source:
California Attorney General
records from this breach used in our total: 0

January 29, 2013 Stethescope.com
Natick, Massachusetts
BSR HACK

Unknown

Those with questions may call (877) 288-8057.

A hacker accessed the webserver used to host stethoscope.com on December 3.  The breach was discovered in mid-December during routine server maintenance.  Customer names, addresses, email addresses, and credit card information such as numbers, expiration dates, and security codes may have been exposed.

 
Information Source:
California Attorney General
records from this breach used in our total: 0

January 28, 2013 RR Donnelley, UnitedHealthcare, Boy Scouts of America
Chicago, Illinois
MED STAT

8,911

UnitedHealthcare has established a hotline for those with questions: 1-866-896-4209.

An unencrypted desktop computer was stolen from an RR Donnelley facility sometime between mid September and the end of November, 2012.  RR Donnelley is a vendor of UnitedHealthcare.  It is unclear why the breach was not noticed until December 3, 2012.  The stolen computer contained UnitedHealthcare member information that was related to participation in the Boy Scouts of America 2003 health benefit plan.  Names, Social Security numbers, and addresses may have been exposed.

UPDATE (10/01/2013): A total of 8,911 Boy Scouts of America Employee Benefit Plan participants were notified of the breach.

 
Information Source:
California Attorney General
records from this breach used in our total: 8,911

January 28, 2013 Walz and Associates Law Firm
Albuquerque, New Mexico
BSO PHYS

Unknown

A concerned citizen found hundreds of documents in a recycling center and notified a local news team.  The documents included criminal histories, depositions, medical records, personal phone numbers, and addresses.  Most were from the 1990's.  Most or all of the information did not need to be shredded because it was considered public record.  The local news team contacted a director from the solid waste division and the documents were removed for shredding.

 
Information Source:
PHIPrivacy.net
records from this breach used in our total: 0

Breach Total
815,842,526 RECORDS BREACHED
(Please see explanation about this total.)
from 4,489 DATA BREACHES made public since 2005
Showing 851-900 of 4489 results


X

Sign In!

Loading