Data breach at IDHS compromises 1M customers


On April 25, the Illinois Department of Human Services (IDHS) experienced a privacy breach. An outside entity, through a phishing campaign, gained access to multiple employee accounts, and files associated with the accounts.

The files included the Social Security numbers (SSNs) of 4,701 customers and three employees. Separately, public assistance account information (name, public assistance account number, and some combination of address, date of birth, Illinois State Board of Education Student Information System ID number, Recipient Identification Number, and cell phone number) was accessed for 1,118,993 customers. That information did not include SSNs.

Read more…
Source: Yahoo News


Sign up for our Newsletter


Related:

  • NSA, CISA Release Guidance on Security Considerations for 5G Network Slicing 

    July 17, 2023

    Today, the National Security Agency (NSA) and CISA published 5G Network Slicing: Security Considerations for Design, Deployment, and Maintenance. This guidance—created by the Enduring Security Framework (ESF), a public-private cross-sector working group led by the NSA and CISA—presents recommendations to address some identified threats to 5G standalone network slicing, and provides industry recognized practices for ...

  • Common typo causes millions of emails intended for members of the US military to be sent to accounts in Mali

    July 17, 2023

    Millions of emails intended for Pentagon employees were inadvertently sent to email accounts in Mali over the last decade because of typos caused by the similarity of the US military’s email address and the domain for the West African country, according to a Dutch technologist who discovered the problem. The emails were intended for owners of ...

  • US energy department, other agencies hit in global hacking spree

    July 16, 2023

    The U.S. Department of Energy and several other federal agencies were hit in a global hacking campaign that exploited a vulnerability in widely used file-transfer software, officials said on Thursday. Data was “compromised” at two entities within the energy department when hackers gained access through a security flaw in MOVEit Transfer, the department said in a ...

  • Commerce Secretary Gina Raimondo’s emails hacked in Microsoft cyber breach

    July 13, 2023

    Commerce Secretary Gina Raimondo’s emails were hacked as part of the Microsoft cyber breach, according to a source familiar with the investigation. Microsoft’s Outlook systems were breached by Chinese hackers, according to the company. The breach was discovered in May. Read more… Source: ABC News  

  • Enhanced Monitoring to Detect APT Activity Targeting Outlook Online

    July 12, 2023

    In June 2023, a Federal Civilian Executive Branch (FCEB) agency identified suspicious activity in their Microsoft 365 (M365) cloud environment. The agency reported the activity to Microsoft and the Cybersecurity and Infrastructure Security Agency (CISA), and Microsoft determined that advanced persistent threat (APT) actors accessed and exfiltrated unclassified Exchange Online Outlook data. CISA and the Federal ...

  • Privacy activists slam EU-US pact on data sharing

    July 11, 2023

    The European Commission has announced a pact with the US to allow easier legal transfer of personal data across the Atlantic. Data privacy activists vowed to challenge the agreement in court. President Joe Biden and EU officials welcomed the deal, which overcame objections about US intelligence agencies’ access to European data. The deal ensures Meta, Google ...