A University of Miami employee experienced identity theft.
It led to a compromise of the UM email account of patients.
The unauthorized access impacted a limited number of UHealth patients because the email account contained some patient names and medical record numbers.
Source: https://healthitsecurity.com/news/3-latest-email-security-breaches-impact-phi
TPRM report: https://scoringcyber.rankiteo.com/company/universityofmiami
"id": "uni213927123",
"linkid": "universityofmiami",
"type": "Data Leak",
"date": "01/2023",
"severity": "50",
"impact": "2",
"explanation": "Attack limited on finance or reputation"
{'affected_entities': [{'customers_affected': 'Limited number of UHealth '
'patients',
'industry': 'Education',
'location': 'Miami, Florida',
'name': 'University of Miami',
'type': 'Educational Institution'}],
'attack_vector': 'Identity Theft',
'data_breach': {'personally_identifiable_information': ['Patient names',
'Medical record '
'numbers'],
'type_of_data_compromised': ['Patient names',
'Medical record numbers']},
'description': 'A University of Miami (UM) employee experienced identity '
'theft, leading to a compromise of the UM email account '
'containing patient names and medical record numbers.',
'impact': {'data_compromised': ['Patient names', 'Medical record numbers'],
'identity_theft_risk': ['High'],
'systems_affected': ['UM email account']},
'title': 'Unauthorized Access to UM Email Account',
'type': 'Identity Theft',
'vulnerability_exploited': 'Identity Theft'}