This incident has 0 proposed changes. Know of details that have changed? Submit them Showing Incident 2814 To_xml

SUMMARY

Stolen computer exposes personal information of more than 500 surgical patient
Records 584
Record Types NAA MED
Breach Type Stolen Computer
Data Family Electronic
Source Outside
Organization Loma Linda University Medical Center
Other Affected/Involved Organizations None
Lawsuit? NO/UNKNOWN
Data Recovered? NO/UNKNOWN
Arrest? NO/UNKNOWN
Submitted By: jkouns

TIMELINE

DateEvent
2010-04-04 Incident Occurred
None. Add Data Incident Discovered By Organization
2010-05-25 Organization Reports Incident
None. Add Data Organization Mails Notifications
None. Add Data Records Recovered
None. Add Data Lawsuit Filed
None. Add Data Arrest Made

SIMILAR INCIDENTS

recordsdateorganizations
450 2006-02-02 Presbyterian Health Care Service
1,441 2007-10-02 Athens Regional Medical Center, Inc.
336 2008-07-19 Minneapolis Veterans Home
807 2006-01-25 Advanced Pain Care, LLC., NDCHealth Corp.

MAP OF INCIDENT LOCATION

Address: 11234 Anderson St, Loma Linda, CA 92354, USA
Have a better address for this incident? Suggest it!

suggest a new reference

REFERENCES

suggest a new attachment

ATTACHMENTS

COSTS SUMMARY

Known Actual Costs

No known costs for this incident.

Estimated Costs

Ponemon Institute Direct Costs Estimate 1 $35,040.00
  1. Note that these estimates are based on the Ponemon Institute's 2009 direct costs figures from their 2009 Annual Study: Cost of a Data Breach. We multiply $60.00 by the number of records to obtain this figure. Keep in mind that depending on the breach, the direct costs are not always suffered by the breached organizations. In the case of credit card number breaches, the direct costs can often be suffered by banks and card issuers. Also note that this is only an estimate.

COMMENTS

by Anonymous on 2010-06-25 (almost 2 years ago)

The average costs per breached record is $204. Much more that direct costs, such as legal consequence, customer disaffection, and IT clean up occur per breached record.

Also, less incidents than what is reported occur when considering a single breach. A series of "minor" breaches that are not legally required to report occur. Also, the size of the organization where the breach occurs may extend or shrink the breach frequency per year, so the total count of breaches per year play in to the total cost.

I am not prepared to think that this Medical center has an Annual Revenue less than 600k/yr and have a staff of 3 people and so, either there are more costs being hidden from us or the number of breaches hidden or public yet to occur this year is not in evidence yet.

New Comment

captcha
Are you human?

Sponsored By: Rbs Tenable Zecurion
Use of the DataLossDB, and its exports, RSS feeds, reports, or other materials produced on this site by the Open Security Foundation requires authorization and potential licensing arrangements. For more information, please e-mail officers@opensecurityfoundation.org with a brief summary of how you would like to use this information; product, service, research, etc.
© 2005 - 2012, Open Security Foundation, All Rights Reserved.