Baylor Genetics, a US-based clinical diagnostic laboratory, says a cyberattack exposed sensitive data belonging to 2,810,878 patients and employees, including some former employees.
The company said it detected an intrusion in a “limited portion” of its IT environment on or around June 15. A subsequent investigation found that attackers had stolen patient names, dates of birth, medical testing information and laboratory test results. Health insurance information and Social Security number may also have been taken, although Baylor Genetics said Social Security numbers came from a “very limited subset of patients”.
For certain current and former employees, the stolen information included Social Security numbers, government-issued identification numbers and financial account information.
Baylor Genetics said there was no evidence of confirmed identity theft, fraud or misuse of the stolen personal information at the time of publication. The company also said the incident did not affect its everyday operations, which continued as usual.
The company did not identify the attackers, and no threat actors had claimed responsibility at the time of publication. Baylor Genetics reported the victim count in a separate filing with the US Department of Health and Human Services. Its website security update did not state the number of affected people.
Comments
0No comments yet. Be the first to comment.