University of Tennessee Medical Center officials are alerting about 8,000 patients that hospital reports containing their private information were not properly disposed of and could pose a privacy breach risk.
“Based upon departmental policy, the report was maintained for 45 days. The oldest report was discarded each day as a current report was added. Rather than being shredded per Hospital policy, the report was discarded in the Hospital’s waste stream,” Thomas stated in the letter. “There was no sensitive, personal or identifying information in view on the outside of the report; however, within the report was certain patient-related information, including the patient’s name and social security number.”
December 1st, 2010
You are currently browsing the articles from numbrX Security Beat written on