New York health system notifies patients of 3rd-party data breach

Buffalo, N.Y.-based Catholic Health notified long-term care patients that some of their protected health information may have been compromised due to a data breach at its consulting services vendor, Minimum Data Set Consultants.

Advertisement

In March, Minimum Data Set Consultants discovered suspicious activity on its EHR systems and launched an investigation into the incident.

The investigation determined that a former employee of Minimum Data Set Consultants accessed files within its system on Aug. 27. 

The files contained Catholic Health patients’ names, birthdates, demographic information, Social Security numbers, Medicare numbers and diagnosis information, according to a May 5 press release from Catholic Health.  

There has been no indication that any of the information has been misused; however, Catholic Health has provided notice to all long-term care residents who have protected health information in its medical records system.

The health system did not state how many patients were affected by the breach.

At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.

Advertisement

Next Up in Cybersecurity

Advertisement

Comments are closed.