Wednesday, July 30, 2008

Private Medical Data of Thousands of Blue Cross Patients Exposed

A mailing error for Blue Cross and Blue Shield of Georgia has put thousands statewide at risk of identity theft. Blue Cross reportedly sent over 200,000 benefits letters containing personal and health information to the wrong addresses last week. The letters in the erroneous letters were primarily Explanation of Benefits letters containing an ID number, the name of the provider, and amounts charged and/or owed. Blue Cross claims that only a small percentage of the letters included Social Security numbers.

The security breach was caused by a change in computer system that had not been properly tested. Blue Cross must send a written notice to those whose names were on the list, and they are in the process of removing Social Security numbers from future mailings.

As you can see, security breaches come in all shapes and sizes. This one was caused by the careless use of an untested computer system. Even though Social Security numbers were not on all the letters, ID numbers and health care information can expose people to potential medical identity theft, where someone can use their information to obtain medical care.

No comments: