The Mississippi Division of Medicaid (DOM) informed that approximately 5,220 individuals of the potential exposure of their protected health information (PHI) were not securely transmitted for more than three years.
The exposed information includes names, birth dates, addresses, phone numbers, email addresses, admission and enrollment dates, health insurer, condition, Social Security numbers, and Medicare and/or Medicaid identification numbers.
They immediately removed error from the website and use of the online form service was terminated.
The agency processed of strengthening technological safeguards, in addition to revising policies and procedures addressing privacy and security regulations.
TPRM report: https://scoringcyber.rankiteo.com/company/mississippi-division-of-medicaid
"id": "mis91911122",
"linkid": "mississippi-division-of-medicaid",
"type": "Data Leak",
"date": "06/2017",
"severity": "85",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'customers_affected': 5220,
'industry': 'Healthcare',
'location': 'Mississippi',
'name': 'Mississippi Division of Medicaid',
'type': 'Government Agency'}],
'data_breach': {'number_of_records_exposed': 5220,
'personally_identifiable_information': True,
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['names',
'birth dates',
'addresses',
'phone numbers',
'email addresses',
'admission and enrollment dates',
'health insurer',
'condition',
'Social Security numbers',
'Medicare and/or Medicaid '
'identification numbers']},
'description': 'The Mississippi Division of Medicaid (DOM) informed that '
'approximately 5,220 individuals of the potential exposure of '
'their protected health information (PHI) were not securely '
'transmitted for more than three years.',
'impact': {'data_compromised': ['names',
'birth dates',
'addresses',
'phone numbers',
'email addresses',
'admission and enrollment dates',
'health insurer',
'condition',
'Social Security numbers',
'Medicare and/or Medicaid identification '
'numbers']},
'response': {'containment_measures': 'Immediately removed error from the '
'website and use of the online form '
'service was terminated.',
'remediation_measures': 'Strengthening technological safeguards, '
'in addition to revising policies and '
'procedures addressing privacy and '
'security regulations.'},
'title': 'Mississippi Division of Medicaid Data Exposure',
'type': 'Data Exposure'}