[Dataloss] [Follow-up] Vassar Brothers Medical Center

Dissent Dissent at pogowasright.org
Thu Feb 8 14:13:16 EST 2007


In August 2006, DL reported that Vassar Brothers Medical Center had 
reported a stolen laptop containing PII on almost 260k patients.
Original story:  http://attrition.org/dataloss/2006/08/vbmc01.html

Vassar Brothers issued two letters to patients following that breach:
http://www.poughkeepsiejournal.com/assets/pdf/BK3538482.PDF
http://www.poughkeepsiejournal.com/assets/pdf/BK6060427.PDF

Subsequently, Vassar Brothers retained Kroll to investigate the theft 
and missing data.  They then issued a press release saying that based 
on Kroll's investigation of network server logs, the stolen laptop 
did not contain any identifying patient information.

The Poughkeepsie Journal has been all over this breach and just 
published two more articles today, which dispute some of VBMC's 
reported statements:

Official: Data installed as part of drills
http://www.poughkeepsiejournal.com/apps/pbcs.dll/article?AID=/20070208/BUSINESS/70207069/1003

and:

Documents show patient data on stolen laptop
http://www.poughkeepsiejournal.com/apps/pbcs.dll/article?AID=/20070208/BUSINESS/70207079




--
Main site: http://www.pogowasright.org
Main RSS feed: http://www.pogowasright.org/backend/pogowasright.rss
Breaches RSS feed: http://www.pogowasright.org/backend/breaches.rss 



More information about the Dataloss mailing list