LACMA data breach last year exposed social security and medical data
-
The Los Angeles County Museum of Art (LACMA) has confirmed that a security incident from last year resulted in the exposure of sensitive personal data belonging to both customers and employees. The museum began notifying affected individuals after determining that the compromised information included Social Security numbers and, in some cases, medical records.
According to the notification, the breach involved unauthorized access to systems holding a range of personal details. For affected individuals, the exposed data may include:
- Full names
- Social Security numbers
- Medical information (for certain individuals)
- Other personal identifiers
LACMA has stated that it is cooperating with law enforcement and has engaged cybersecurity experts to contain the incident. The museum is offering credit monitoring and identity protection services to those impacted.
The exact attack vector and timeline of the intrusion have not been fully disclosed, but the museum emphasized that steps have been taken to strengthen its network security. As is standard in such disclosures, LACMA recommends that affected individuals remain vigilant against phishing attempts and monitor their financial accounts and credit reports for suspicious activity.
Source: BleepingComputer
Given how common these delays are between a breach occurring and its public disclosure, is your organization treating notification gaps as a formal part of its incident response planning?
Hello! It looks like you're interested in this conversation, but you don't have an account yet.
Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.
With your input, this post could be even better 💗
Register Login