{"id":130249,"date":"2024-05-10T19:37:08","date_gmt":"2024-05-10T23:37:08","guid":{"rendered":"https:\/\/rbach.net\/?p=130249"},"modified":"2024-05-10T19:37:08","modified_gmt":"2024-05-10T23:37:08","slug":"data-breach-ensnares-michigan-politician","status":"publish","type":"post","link":"https:\/\/rbach.net\/index.php\/data-breach-ensnares-michigan-politician\/","title":{"rendered":"Data Breach Ensnares Michigan Politician"},"content":{"rendered":"\r\n<p><a href=\"https:\/\/www.cse.wustl.edu\/~jain\/cse473-20\/ftp\/i_8sec.pdf\" target=\"_blank\" rel=\"noopener\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignleft wp-image-120781\" title=\"Data Breach Ensnares Michigan Politician\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/godaddy_data_theft.jpg?resize=125%2C102&#038;ssl=1\" alt=\"Data Breach Ensnares Michigan Politician\" width=\"125\" height=\"102\" \/><\/a>Hardly a day goes by that another company announces a data breach. In 2023, <strong>353 million people<\/strong> had their personal info stolen. One reason for this many data breaches is the rise in healthcare data breaches. Since 2020, the healthcare sector has recorded <a title=\"Number of cases of data violation due to cyber attacks in the United States from 2020 to 2023, by industry\" href=\"https:\/\/www.statista.com\/statistics\/1318379\/us-number-of-private-data-compromises-by-industry\/\" target=\"_blank\" rel=\"nofollow noopener\">the most data breaches<\/a>. Healthcare is digitizing and storing lots of sensitive data. This sensitive data is a desirable target for hackers. Attackers can<strong> re-use the stolen information<\/strong>. They can use it to run more attacks. These include <strong>ransomware<\/strong>, <strong>SPAM emails, phishing, vishing, and bogus websites<\/strong>.<\/p>\r\n<p><a href=\"https:\/\/www.defcon-lab.org\/weekleaks-2019\/\" target=\"_blank\" rel=\"noopener\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignright wp-image-113164\" title=\"Data leak\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/data_leak-2-e1714951919203-150x107.png?resize=100%2C71&#038;ssl=1\" alt=\"Data Leak\" width=\"100\" height=\"71\" srcset=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/data_leak-2-e1714951919203.png?resize=150%2C107&amp;ssl=1 150w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/data_leak-2-e1714951919203.png?resize=75%2C54&amp;ssl=1 75w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/data_leak-2-e1714951919203.png?w=252&amp;ssl=1 252w\" sizes=\"auto, (max-width: 100px) 100vw, 100px\" \/><\/a>One example of why breaches in the healthcare sector are increasing is Perry Johnson and Associates (PJ&amp;A). PJ&amp;A is a health care consulting and medical transcription firm. It is largest private provider of transcription services in the United States. They have offices in Troy MI at the world headquarters of Perry Johnson Inc. <a title=\"Perry Johnson\" href=\"https:\/\/www.perryjohnson.com\/\" target=\"_blank\" rel=\"nofollow noopener\">Perry Johnson<\/a>, of Bloomfield Hills MI, heads the firm. His claim to fame is as a &#8220;quality guru.&#8221;<\/p>\r\n<h3>Politics<\/h3>\r\n<p>Johnson has a dubious political track-record. He spent more than $20 million of his own money to get elected. He <strong><a title=\"Republican businessman Perry Johnson joining race for Michigan governor\" href=\"https:\/\/www.detroitnews.com\/story\/news\/local\/michigan\/2022\/01\/27\/republican-businessman-perry-johnson-joining-race-michigan-governor\/9241033002\/\" target=\"_blank\" rel=\"nofollow noopener\">ran for governor<\/a> of Michigan<\/strong>, as a Republican in 2022. But, before the Republican primary, they <strong>removed him from the ballot<\/strong>. This was due to<a title=\"Federal judge rules against MI gov. candidate Perry Johnson\" href=\"https:\/\/www.wlns.com\/news\/michigan\/federal-judge-rules-against-mi-gov-candidate-perry-johnson\/\" target=\"_blank\" rel=\"nofollow noopener\"> fraudulent and invalid<\/a> petition signatures. Johnson later started a campaign to become the<strong> 2024 Republican candidate for president. <\/strong>He <a title=\"Michigan businessman Perry Johnson ends GOP presidential bid\" href=\"https:\/\/www.cnn.com\/2023\/10\/20\/politics\/perry-johnson-ends-bid\/index.html\" target=\"_blank\" rel=\"nofollow noopener\">abandoned<\/a> that effort in October 2023.<\/p>\r\n<p><a href=\"https:\/\/springfieldbound.fandom.com\/wiki\/Mayor_Joe_Quimby\" target=\"_blank\" rel=\"noopener\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignright wp-image-113445\" title=\"Politican\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/politician-3.jpg?resize=92%2C100&#038;ssl=1\" alt=\"Politican\" width=\"92\" height=\"100\" \/><\/a>A <strong>data breach<\/strong> controversy has also ensnared Johnson. PJ&amp;A suffered a data breach in March 2023. The PJ&amp;A data breach is the <strong><a title=\"Health care data breaches hit 1 in 3 Americans last year: Is your data vulnerable?\" href=\"https:\/\/www.usatoday.com\/story\/news\/health\/2024\/02\/18\/health-data-breaches-hit-new-record-2023\/72507651007\/\" target=\"_blank\" rel=\"nofollow noopener\">second-largest<\/a> healthcare data breach of 2023<\/strong> and the 6th largest ever. The cyberattack exposed the medical and other personal data of at least 14 million people in the U.S. according to <a title=\"The HIPAA Journal\" href=\"https:\/\/www.hipaajournal.com\/\" target=\"_blank\" rel=\"nofollow noopener\">The HIPAA Journal<\/a>, an online publication that covers the <a title=\"Health Insurance Portability and Accountability Act.\" href=\"https:\/\/web.archive.org\/web\/20240515064229\/https:\/\/www.cdc.gov\/phlp\/publications\/topic\/hipaa.html\" target=\"_blank\" rel=\"nofollow noopener\">Health Insurance Portability and Accountability Act.<\/a><\/p>\r\n<h3>What Happened<\/h3>\r\n<p>PJ&amp;A found unauthorized activity in its IT systems on May 2, 2023. It hired third-party cybersecurity experts to investigate the incident. The experts were assigned to find the attack&#8217;s nature and scope. They were to see if the attackers took sensitive data.<\/p>\r\n<p><a href=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/Confused-3-e1714952107767.jpg?ssl=1\" target=\"_blank\" rel=\"noopener\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignright wp-image-130713\" title=\"unauthorized activity\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/Confused-3.jpg?resize=100%2C99&#038;ssl=1\" alt=\"unauthorized activity\" width=\"100\" height=\"99\" \/><\/a>The investigation confirmed unauthorized network access. The unauthorized access occurred from March 27, 2023, to May 2, 2023. During this time, attackers got data from its clients. PJ&amp;A told its clients about the cyberattack on July 21, 2023. In the following days, they confirmed unauthorized access to data.<\/p>\r\n<h3>Data compromised in data breach<\/h3>\r\n<p>Investigators completed the PJ&amp;A data breach investigation on September 28, 2023. PJ&amp;A said the information accessed by the unauthorized party included:<\/p>\r\n<ul>\r\n<li>Name,<\/li>\r\n<li>Address,<\/li>\r\n<li>Date of birth,<\/li>\r\n<li><a href=\"https:\/\/www.calpeculiarities.com\/2013\/03\/27\/growing-california-trade-secret-preemption-doctrine-may-thwart-efforts-to-combat-employee-data-theft\/\" target=\"_blank\" rel=\"noopener\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignright wp-image-116373\" title=\"information accessed by the unauthorized party\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/data_thief-7-e1714952166232-88x150.jpg?resize=59%2C100&#038;ssl=1\" alt=\"information accessed by the unauthorized party\" width=\"59\" height=\"100\" srcset=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/data_thief-7-e1714952166232.jpg?resize=88%2C150&amp;ssl=1 88w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/data_thief-7-e1714952166232.jpg?resize=44%2C75&amp;ssl=1 44w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/data_thief-7-e1714952166232.jpg?w=168&amp;ssl=1 168w\" sizes=\"auto, (max-width: 59px) 100vw, 59px\" \/><\/a>Medical record number,<\/li>\r\n<li>Hospital account number,<\/li>\r\n<li>Admission diagnosis,<\/li>\r\n<li>Date\/time of service,<\/li>\r\n<li>Social Security number,<\/li>\r\n<li>Insurance information,<\/li>\r\n<li>Medical and clinical information including:<\/li>\r\n<li>Laboratory and diagnostic testing results,<\/li>\r\n<li>Medications,<\/li>\r\n<li>The name of the treatment facility, and<\/li>\r\n<li>Healthcare provider name.<\/li>\r\n<\/ul>\r\n<h3>Who does the data breach impact?<\/h3>\r\n<p>Health care providers that have reported data breaches related to Perry Johnson &amp; Associates:<\/p>\r\n<ul>\r\n<li><a href=\"https:\/\/whitecollarcrimenews.com\/statutes\/theft-by-deception\/\" target=\"_blank\" rel=\"noopener\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignright wp-image-131124\" title=\"Health care providers that have reported data breaches\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/data_breach-4.jpg?resize=100%2C75&#038;ssl=1\" alt=\"Health care providers that have reported data breaches\" width=\"100\" height=\"75\" srcset=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/data_breach-4.jpg?resize=150%2C113&amp;ssl=1 150w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/data_breach-4.jpg?resize=75%2C56&amp;ssl=1 75w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/data_breach-4.jpg?w=430&amp;ssl=1 430w\" sizes=\"auto, (max-width: 100px) 100vw, 100px\" \/><\/a>Concentra (NY) 01\/09\/2024, almost 4 million records.<\/li>\r\n<li>North Kansas City Hospital (MO) 01\/05\/2024, over 500,000 records.<\/li>\r\n<li>Cook County Health (IL) 1.2 million individuals.<\/li>\r\n<li>Northwell Health (NY) 3,891,565 individuals.<\/li>\r\n<li>Mercy Medical Center (IA) 97,132 patients.<\/li>\r\n<\/ul>\r\n<h3><em>rb-<\/em><\/h3>\r\n<p><em>In recent years, the healthcare industry has become a prime target for cyberattacks. Data breaches are a big threat to patient privacy and institutional integrity. The Perry Johnson &amp; Associates incident shows the vulnerabilities in healthcare systems.<\/em><\/p>\r\n<p><em>The repercussions of such a breach are far-reaching. This exposure could lead to identity theft and financial fraud. It affects individuals and reveals their personal and medical information.<\/em><\/p>\r\n<p><em>For patients, the incident is a wake-up call. They need to guard their personal data. They must also watch their digital footprint. Consumers can take actions to protect against data misuse. These include placing a credit freeze. You can also take these additional steps:<\/em><\/p>\r\n<ul>\r\n<li><em>Place a credit freeze, which would prevent thieves from opening a new account in their name,<\/em><\/li>\r\n<li><em>Put a fraud alert on their credit report so lenders can take extra steps to verify your identity before issuing credit,<\/em><\/li>\r\n<li><em>Obtain copies of their medical records and review them for any errors,<\/em><\/li>\r\n<li><em>Contest unrecognized medical billing, and<\/em><\/li>\r\n<li><em>Inform your insurance company.<\/em><\/li>\r\n<\/ul>\r\n<h6>Related articles<\/h6>\r\n<ul>\r\n<li><a title=\"The biggest data breach fines, penalties, and settlements so far\" href=\"https:\/\/www.csoonline.com\/article\/567531\/the-biggest-data-breach-fines-penalties-and-settlements-so-far.html\" target=\"_blank\" rel=\"nofollow noopener\">The biggest data breach fines, penalties, and settlements so far<\/a> (<a title=\"CSO\" href=\"https:\/\/www.csoonline.com\" target=\"_blank\" rel=\"nofollow noopener\">CSO<\/a>)<\/li>\r\n<\/ul>\r\n<p>&nbsp;<\/p>\r\n<p><em><a title=\"Ralph Bach\" href=\"https:\/\/rbach.net\/index.php\/new-resume\/\" target=\"_blank\" rel=\"noopener noreferrer\">Ralph Bach<\/a>\u00a0has been in IT long enough to know better and has blogged from his\u00a0<a title=\"Bach Seat\" href=\"https:\/\/rbach.net\/\" target=\"_blank\" rel=\"noopener noreferrer\">Bach Seat<\/a> about IT, careers, and anything else that catches his attention since 2005. You can follow him on <a class=\"broken_link\" href=\"http:\/\/www.linkedin.com\/in\/rb48334\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">LinkedIn<\/a>,\u00a0<a href=\"https:\/\/www.facebook.com\/ralph.bach.14\" target=\"_blank\" rel=\"noopener noreferrer\">Facebook<\/a>,\u00a0and\u00a0<a href=\"https:\/\/twitter.com\/rbach48334\" target=\"_blank\" rel=\"noopener noreferrer\">Twitter<\/a>. Email the Bach Seat\u00a0<a href=\"mailto:\/\/bach.seat@gmail.com\" target=\"_blank\" rel=\"noopener noreferrer\">here<\/a>.<\/em><\/p>\r\n","protected":false},"excerpt":{"rendered":"<p>Perry Johnson Associates data breach entangles Michigan politician. The breach is the second-largest healthcare data breach of 2023 and the 6th largest ever.<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[],"tags":[3719,32,2162,329],"class_list":["post-130249","post","type-post","status-publish","format-standard","hentry","tag-3719","tag-business","tag-hacking","tag-healthcare"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts\/130249","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/comments?post=130249"}],"version-history":[{"count":10,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts\/130249\/revisions"}],"predecessor-version":[{"id":131291,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts\/130249\/revisions\/131291"}],"wp:attachment":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/media?parent=130249"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/categories?post=130249"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/tags?post=130249"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}