Thursday, May 21, 2015

Information beloging to Million+ customers handed over to hackers ( I mean not voluntarily) - I think I have heard this name (Blue Cross Blue Shield) name a few times before



Of course, if handed over voluntarily , it would be called insider theft.
If the external part gets hold of it , it would be called "being hacked". However, the word "hacked" somehow implies that the data was stolen by passing some complicated security controls.

Could it be that the company had shabby Security

OR

Just spent  a lot of money without having a "common sense" security approach?



However , there is one small gain
CareFirst is offering two years of free credit monitoring so, if you are one of the affected ones, take advantage of this offer.


From the Article

Attackers gained access to a single company database containing the sensitive and personal information of more than a million of its current and former health insurance customers. 


In an effort to downplay the attack, CareFirst CEO Chet Burrell and other spokespersons are claiming that Social Security numbers, medical claims, employment, payment card and financial information were not exposed in the breach. 

CareFirst claims it initially detected the attack but incorrectly believed it had contained the attack and prevented the attackers from accessing any information. It only became aware of the full scope of the attack after hiring an incident response firm to perform a network analysis 


For more info:

No comments:

Post a Comment