Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CPS Solutions Files Notice of Data Breach Following Unauthorized Access to Business Email Account #21787

Open
swidup opened this issue Feb 15, 2025 · 0 comments

Comments

@swidup
Copy link
Member

swidup commented Feb 15, 2025

https://www.jdsupra.com/legalnews/cps-solutions-files-notice-of-data-3945470/

"On February 10, 2025, CPS Solutions, LLC filed a notice of data breach with the U.S. Department of Health and Human Services Office for Civil Rights after discovering that an unauthorized actor was able to access a company email account. In this notice, CPS Solutions explains that the incident resulted in an unauthorized party being able to access consumers’ sensitive information, which includes their name, Social Security number, date of birth, health insurance information, and medical information. Upon completing its investigation, CPS Solutions began sending out data breach notification letters to all individuals whose information was affected by the recent data security incident.

What Caused the CPS Solutions Data Breach?
The CPS Solutions data breach was only recently announced, and more information is expected in the near future. However, CPS Solutions’ filing with the U.S. Department of Health and Human Services Office for Civil Rights provides some important information on what led up to the breach. CPS Solutions also posted a notice on its website discussing the incident.

According to this source, on December 4, 2024, CPS Solutions learned that an unauthorized party had gained access to an employee’s email account. In response, CPS Solutions forced a password reset and took other steps to terminate all unauthorized access. After securing the account later that day, CPS Solutions launched an investigation to learn more about the incident and what impact it may have had on the confidential information in the company’s possession.

Through this investigation, CPS Solutions confirmed that the unauthorized third party was able to access and remove data from the account between December 2, 2024 and December 4, 2024."

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant