The California Office of the Attorney General reported a data breach involving Marshall Medical Center (MMC) on April 28, 2020, which occurred on February 18, 2020. The breach involved unauthorized access to MMC employees' data by an unknown individual, potentially including names, addresses, pay details, and Social Security numbers, but the specific information accessed is unclear. As a response, MMC decided to cease sending data to the vendor PaperlessPay and initiated security upgrades.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-189529
TPRM report: https://www.rankiteo.com/company/maury-regional-medical-center
"id": "mau335072825",
"linkid": "maury-regional-medical-center",
"type": "Breach",
"date": "2/2020",
"severity": "60",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'industry': 'Healthcare',
'location': 'California',
'name': 'Marshall Medical Center',
'type': 'Healthcare'}],
'attack_vector': 'Unauthorized Access',
'data_breach': {'personally_identifiable_information': True,
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['names',
'addresses',
'pay details',
'Social Security numbers']},
'date_detected': '2020-04-28',
'date_publicly_disclosed': '2020-04-28',
'description': "Unauthorized access to MMC employees' data by an unknown "
'individual, potentially including names, addresses, pay '
'details, and Social Security numbers.',
'impact': {'data_compromised': ['names',
'addresses',
'pay details',
'Social Security numbers']},
'references': [{'date_accessed': '2020-04-28',
'source': 'California Office of the Attorney General'}],
'response': {'containment_measures': ['Ceased sending data to the vendor '
'PaperlessPay'],
'remediation_measures': ['Initiated security upgrades']},
'threat_actor': 'Unknown Individual',
'title': 'Data Breach at Marshall Medical Center',
'type': 'Data Breach'}