In April 2020, the company published a notice on its website explaining that their security team had discovered unauthorised access to one of their employee's email accounts between 22nd to 24th January.
Although the company stated that they had found no clear signs of misuse, it did not rule out the exposure of customer personal information.
In September 2022, the company reached a $12 million settlement with the 232,772 patients affected.
Want to discuss this case? You can purchase a 30 minute conference call with our analysts to discuss this case and the implications it has for your organisation. Just select the time and date that works for you:
We've done the analysis so you can make the decisions