Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Quest Diagnostics says 12 million patients may have had their personal information exposed
cnn ^

Posted on 06/07/2019 7:19:29 AM PDT by BenLurkin

The clinical laboratory company said in a release that an "unauthorized user" gained access to a system used by American Medical Collection Agency (AMCA), a billing vendor hired by a Quest contractor called Optum360.

Quest said the information that may have been exposed included Social Security numbers and medical information, but not test results.

AMCA first notified Quest on May 14 of "potential unauthorized activity" on its payment page, Quest said. Two weeks later, according to Quest, AMCA then told Quest and Optum360 more about the breach, including the number of patients potentially affected and what information was accessed.

Quest (DGX) said it has suspended using AMCA and that it was using "forensic experts" to examine the issue.

It also said that AMCA has not provided "detailed or complete information" about the hack, including which customers might have been affected.

(Excerpt) Read more at cnn.com ...


TOPICS: Business/Economy; Computers/Internet
KEYWORDS: amca; databreach; diagnostics; optum360; quest; questdiagnostics

1 posted on 06/07/2019 7:19:29 AM PDT by BenLurkin
[ Post Reply | Private Reply | View Replies]

To: BenLurkin
Companies insist on obtaining highly confidential information from customers, and then skate after suffering massive security failures which release that highly confidential information to random hackers. Equifax spewed out the credit information of millions of people in 2017, and the only remedy they provided the victims was a year's free subscription to their own online security product - the security product of a company which obviously knows nothing about basic data security.

There need to be severe liability consequences, not worthless class-action suits which provide victims with coupons and other garbage. Both Republicans and Democrats are too busy covering the butts of these companies and not trying to protect the interests of their constituents - Equifax continues to get big government contracts, by the way.
2 posted on 06/07/2019 7:32:52 AM PDT by AnotherUnixGeek
[ Post Reply | Private Reply | To 1 | View Replies]

To: BenLurkin

Well thank goodness i will receive Free Credit Monitoring for a year!! And i feel great knowing that if there is a class action lawsuit over this some attorneys will make $$Millions.


3 posted on 06/07/2019 7:33:46 AM PDT by utax
[ Post Reply | Private Reply | To 1 | View Replies]

To: AnotherUnixGeek

” the security product of a company which obviously knows nothing about basic data security.”

Who would have guessed there would be a problem when their “Chief Security Officer” was a music major? No one could have seen it coming.


4 posted on 06/07/2019 7:46:28 AM PDT by utax
[ Post Reply | Private Reply | To 2 | View Replies]

To: utax; BenLurkin

Look at the hurdles that must be cleared to opt-out.

There should be one standardized form (post card) saying do not report my credit history and do not bother me again.


5 posted on 06/07/2019 7:47:13 AM PDT by ptsal
[ Post Reply | Private Reply | To 3 | View Replies]

To: utax

https://m.youtube.com/watch?v=x8FNVsbnwWE

Free monitoring! :-)


6 posted on 06/07/2019 7:49:59 AM PDT by aMorePerfectUnion
[ Post Reply | Private Reply | To 3 | View Replies]

To: BenLurkin

As Clark Howard says, DO NOT GIVE YOUR SSN to any medical outfit. ANY. Under their medical oath, that cannot deny you treatment.


7 posted on 06/07/2019 7:54:45 AM PDT by George from New England (escaped CT in 2006, now living north of Tampa)
[ Post Reply | Private Reply | To 1 | View Replies]

To: utax

There is no such thing as FREE.

Any credit monitoring IS NOTHING MORE than your exposure to another avenue of ID theft.


8 posted on 06/07/2019 7:55:40 AM PDT by George from New England (escaped CT in 2006, now living north of Tampa)
[ Post Reply | Private Reply | To 3 | View Replies]

To: ptsal

“Look at the hurdles that must be cleared to opt-out.”

It’s long overdue for Congress to pass a law restricting SSN for I.R.S. use only.

ONLY. No medical, no credit, no nothing.


9 posted on 06/07/2019 7:57:40 AM PDT by George from New England (escaped CT in 2006, now living north of Tampa)
[ Post Reply | Private Reply | To 5 | View Replies]

To: ptsal

I have a credit freeze in place with the big 3, as well as a couple of other agencies.

Good info here => https://www.bogleheads.org/wiki/Credit_freeze


10 posted on 06/07/2019 8:06:46 AM PDT by Ken H (2019 => The House of Representin')
[ Post Reply | Private Reply | To 5 | View Replies]

To: George from New England
Before I came to the obvious conclusions that SSNs are no longer private, I just used a fake one with the following alphabet numbers:
621-31-1920 (6-21-3-11-9-20)

Nobody ever questioned it because they never used it ... they just wanted it.

11 posted on 06/07/2019 8:08:36 AM PDT by glennaro
[ Post Reply | Private Reply | To 7 | View Replies]

To: BenLurkin

I have epilepsy. And?


12 posted on 06/07/2019 8:09:28 AM PDT by wastedyears (The left would kill every single one of us and our families if they knew they could get away with it)
[ Post Reply | Private Reply | To 1 | View Replies]

To: glennaro

The reality is its is only used for collection actions. Offices will claim “the law requires it” to be submitted. Or “insurance requires it” or “we need it to verify you are who you say you are”. All crap.


13 posted on 06/07/2019 8:12:32 AM PDT by George from New England (escaped CT in 2006, now living north of Tampa)
[ Post Reply | Private Reply | To 11 | View Replies]

To: All

This just proves medical records should not be on line.


14 posted on 06/07/2019 8:14:10 AM PDT by Retvet (Retvet)
[ Post Reply | Private Reply | To 1 | View Replies]

To: George from New England

It’s long overdue for Congress to pass a law restricting SSN for I.R.S. use only.

ONLY. No medical, no credit, no nothing.

Out in Pelosi country, decades ago, Jim Eason a somewhat conservative radio talk show host, would go on a rant several times a year warning us about our SSN’s in the wrong hands. He took particular aim at the healthcare industry.

Like many ahead of their time prophets, we made a lot of fun of him.

Then, we find out that minimum wage receptionists in doctor’s offices and hospital admitting offices were peddling SSN’s for their profit.


15 posted on 06/07/2019 8:38:36 AM PDT by Grampa Dave ( Frau Mueller? "What do the Clintons, Obama and their Spygate CIA/FBI/DOJ thugs hav on you???????")
[ Post Reply | Private Reply | To 9 | View Replies]

To: George from New England
It’s long overdue for Congress to pass a law restricting SSN for I.R.S. use only.

That horse left the barn long ago.

16 posted on 06/07/2019 8:50:26 AM PDT by unixfox (Abolish Slavery, Repeal the 16th Amendment)
[ Post Reply | Private Reply | To 9 | View Replies]

To: glennaro

621-31-1920 (6-21-3-11-9-20)
Nobody ever questioned it because they never used it ... they just wanted it.
_____________________________________

From retired computer programmer pov, the first thing I would do is strip all special characters from the string, check the count of digits remaining, and post error if not 10. So you really don’t know whether they used it or not.


17 posted on 06/07/2019 9:27:38 AM PDT by RideForever
[ Post Reply | Private Reply | To 11 | View Replies]

To: wastedyears

I’m sorry to hear that.


18 posted on 06/07/2019 9:37:55 AM PDT by BenLurkin (The above is not a statement of fact. It is either opinion or satire. Or both.)
[ Post Reply | Private Reply | To 12 | View Replies]

To: BenLurkin

Why do they design systems so that this much data can be accessed at one time by one user?

Each individual user must have limited access. Any users with superuser access must be restricted to logging on ON the premises, and with strict logging and real-time monitoring.

It way past time to trash the SSN as it is now. For starters, it has no check digit. Should be longer, contain letters and/or numbers, and be checked every time it’s used for internal consistency. But what would the systems designers know about that?

SSN should not be used as the universal individual citizen identifier, as it is now. It was a retirement account number! Ah, but the politicians in charge at the time knew damn well what they were doing, and knew what it would become. Luckily, they’re all dead now.


19 posted on 06/07/2019 10:04:11 AM PDT by I want the USA back (Islam, not a religion, a totalitarian political ideology aiming for world domination. -Wilders)
[ Post Reply | Private Reply | To 1 | View Replies]

To: George from New England

See 1974 privacy act law.


20 posted on 06/08/2019 3:26:54 AM PDT by curious7
[ Post Reply | Private Reply | To 9 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson