Jefferson Healthcare hit by 'phishing' cyber attack that compromised 2,550 employees personal information.
The compromised information included full names of individuals, as well as their dates of birth, phone numbers, home addresses, health insurance information, dates of service, and diagnosis and treatment information.
Jefferson Healthcare officials immediately took steps to halt the unauthorized access to the employee’s email account and to prevent further access and also took immediate steps to enhance their information security systems.
Source: https://www.ptleader.com/stories/jefferson-healthcare-hit-by-phishing-cyber-attack,73154
TPRM report: https://scoringcyber.rankiteo.com/company/jefferson-healthcare
"id": "jef134324522",
"linkid": "jefferson-healthcare",
"type": "Cyber Attack",
"date": "01/2021",
"severity": "70",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'customers_affected': 2550,
'industry': 'Healthcare',
'name': 'Jefferson Healthcare',
'type': 'Healthcare'}],
'attack_vector': 'Email',
'data_breach': {'number_of_records_exposed': 2550,
'personally_identifiable_information': ['Full names',
'Dates of birth',
'Phone numbers',
'Home addresses',
'Health insurance '
'information',
'Dates of service',
'Diagnosis and '
'treatment '
'information'],
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['PII', 'PHI']},
'description': "Jefferson Healthcare hit by 'phishing' cyber attack that "
'compromised 2,550 employees personal information.',
'impact': {'data_compromised': ['Full names',
'Dates of birth',
'Phone numbers',
'Home addresses',
'Health insurance information',
'Dates of service',
'Diagnosis and treatment information']},
'initial_access_broker': {'entry_point': 'Email'},
'response': {'containment_measures': 'Immediate steps to halt unauthorized '
'access to the employee’s email account '
'and to prevent further access',
'remediation_measures': 'Immediate steps to enhance their '
'information security systems'},
'title': 'Jefferson Healthcare Phishing Attack',
'type': 'Phishing',
'vulnerability_exploited': 'Human Error'}