Threat Intelligence

7/31/2017
03:40 PM
50%
50%

Anthem Hit with Data Breach of 18,580 Medicare Members

Third-party service provider for the insurer discovered one of its employees allegedly engaged in identity theft of thousands of Anthem Medicare members.

Anthem recently learned that 18,580 of its Medicare members may have been victims of identity theft, after its third-party coordination services vendor LaunchPoint Ventures discovered an employee had emailed a file containing the sensitive information to his personal email account.

The Anthem file contained Medicare ID numbers, which also includes social security numbers, Health Plan ID numbers, Medicare contract numbers, dates of enrollment, and, in some cases, the last names and dates of birth of the members. LaunchPoint, which hired a forensics company to investigate the breach, currently does not have any information that the pilfered data was misused, according to Anthem.

On April 12, LaunchPoint discovered one of its employees was allegedly engaged in identity theft activities and hired a forensics company. Then on July 8, LaunchPoint discovered the employee had emailed the Anthem file to his personal account, which violated LaunchPoint's policies. The company learned the file contained Protected Health Information (PHI) on July 12 and two days later it reported the breach to Anthem.

LaunchPoint terminated the employee and is working with law enforcement to look into the matter. In the meantime, the former employee is incarcerated and under investigation for an unrelated issue, LaunchPoint noted.

Read more about the Anthem breach here.

Dark Reading's Quick Hits delivers a brief synopsis and summary of the significance of breaking news events. For more information from the original source of the news item, please follow the link provided in this article. View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
ddoman101
50%
50%
ddoman101,
User Rank: Apprentice
3/27/2018 | 10:46:34 AM
Anthem Deleting post about breach
Interesting that Anthem appears to have deleted the blog post about the breach since this article was published. 
fred.kneip_cybergrx
50%
50%
fred.kneip_cybergrx,
User Rank: Apprentice
8/2/2017 | 12:17:45 AM
Anthem breach highlights third-party cyber risk
Vulnerable third parties continue to be a weak point for enterprises tasked with safeguarding personal data. The Anthem breach shows how little it can take – the actions of a single employee at a single contractor – to put the vital information of thousands of people at risk. As digital ecosystems grow increasingly interconnected, it's critical that organizations understand and manage their own cyber risk and make decisions based upon the security postures of the third parties with access to their networks.

 
White House Cybersecurity Strategy at a Crossroads
Kelly Jackson Higgins, Executive Editor at Dark Reading,  7/17/2018
Mueller Probe Yields Hacking Indictments for 12 Russian Military Officers
Kelly Jackson Higgins, Executive Editor at Dark Reading,  7/13/2018
10 Ways to Protect Protocols That Aren't DNS
Curtis Franklin Jr., Senior Editor at Dark Reading,  7/16/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: This comment is waiting for review by our moderators.
Current Issue
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2016-10727
PUBLISHED: 2018-07-20
camel/providers/imapx/camel-imapx-server.c in the IMAPx component in GNOME evolution-data-server before 3.21.2 proceeds with cleartext data containing a password if the client wishes to use STARTTLS but the server will not use STARTTLS, which makes it easier for remote attackers to obtain sensitive ...
CVE-2018-8018
PUBLISHED: 2018-07-20
Apache Ignite 2.5 and earlier serialization mechanism does not have a list of classes allowed for serialization/deserialization, which makes it possible to run arbitrary code when 3-rd party vulnerable classes are present in Ignite classpath. The vulnerability can be exploited if the one sends a spe...
CVE-2018-14415
PUBLISHED: 2018-07-20
An issue was discovered in idreamsoft iCMS before 7.0.10. XSS exists via the fourth and fifth input elements on the admincp.php?app=prop&do=add screen.
CVE-2018-14418
PUBLISHED: 2018-07-20
In Msvod Cms v10, SQL Injection exists via an images/lists?cid= URI.
CVE-2018-14419
PUBLISHED: 2018-07-20
MetInfo 6.0.0 allows XSS via a modified name of the navigation bar on the home page.