<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>LifeLock Blog &#187; data breach notification</title>
	<atom:link href="http://www.thecreditprotector.com/blog/category/data-breach-notification/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.thecreditprotector.com/blog</link>
	<description>30 Days Free &#38; Pay Only $9 a Month With Promo Code "DEFENSE"</description>
	<lastBuildDate>Thu, 09 Sep 2010 18:21:53 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Consumers not connecting data breach and ID theft, study shows</title>
		<link>http://www.thecreditprotector.com/blog/2009/11/consumers-not-connecting-data-breach-and-id-theft-study-shows/</link>
		<comments>http://www.thecreditprotector.com/blog/2009/11/consumers-not-connecting-data-breach-and-id-theft-study-shows/#comments</comments>
		<pubDate>Mon, 02 Nov 2009 20:04:47 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[data breach notification]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[data breach notification law]]></category>
		<category><![CDATA[ID theft]]></category>
		<category><![CDATA[identity theft]]></category>
		<category><![CDATA[identity theft victim]]></category>
		<category><![CDATA[Javelin Strategy and Research]]></category>
		<category><![CDATA[Verizon Business]]></category>

		<guid isPermaLink="false">http://www.thecreditprotector.com/blog/?p=604</guid>
		<description><![CDATA[Somehow consumers aren’t making the connection between receiving a data breach notification and later becoming an identity theft victim, according to a new study. As a result, people whose information has been compromised in a data breach are four times more likely to become victims of either identity theft or credit fraud within the next [...]]]></description>
			<content:encoded><![CDATA[<p>Somehow consumers aren’t making the connection between receiving a data breach notification and later becoming an identity theft victim, according to a new study. As a result, people whose information has been compromised in a data breach are four times more likely to become victims of either identity theft or credit fraud within the next 12 months.</p>
<p>Yet, when asked later about having become identity theft victims, few of the survey respondents attributed their fraud to the data breach they’d been involved in.</p>
<p>The objective behind sending the data breach notification letters is to let consumers know their personal or financial information has been compromised. The notices should spur credit card and bankcard holders to place fraud alerts or credit freezes on their credit reports, or to enroll in identity theft protection services or credit monitoring services.</p>
<p>Unfortunately, it seems few recipients of the data breach notifications are taking heed.<span id="more-604"></span></p>
<p>More than 285 million records were compromised in 2008, according to the Verizon Business 2009 Data Breach Investigation Report. Nearly 10 million Americans became ID theft victims in 2008, a 22% increase over 2007.</p>
<p>The report is based on information collected during Javelin’s 2008 Identity Fraud survey, which involved nearly 5,000 American consumers during October 2008. The results are consistent with similar findings in 2006 and 2007.</p>
<p>Javelin is the leading provider of nationally representative, quantitative research focused exclusively on financial services topics. Based on the most rigorous statistical methodologies, Javelin conducts in-depth primary research studies to pinpoint dynamic risks and opportunities.</p>
<div></div>
]]></content:encoded>
			<wfw:commentRss>http://www.thecreditprotector.com/blog/2009/11/consumers-not-connecting-data-breach-and-id-theft-study-shows/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Sept. 23 deadline for health-care data breach, ID theft risk notification rules</title>
		<link>http://www.thecreditprotector.com/blog/2009/09/sept-23-deadline-for-health-care-data-breach-id-theft-risk-notification-rules/</link>
		<comments>http://www.thecreditprotector.com/blog/2009/09/sept-23-deadline-for-health-care-data-breach-id-theft-risk-notification-rules/#comments</comments>
		<pubDate>Mon, 21 Sep 2009 15:44:26 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[data breach notification]]></category>
		<category><![CDATA[computer hacker]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[data breach notification law]]></category>
		<category><![CDATA[HIPAA]]></category>
		<category><![CDATA[ID theft]]></category>
		<category><![CDATA[identity theft]]></category>
		<category><![CDATA[medical ID theft]]></category>
		<category><![CDATA[medical identity theft]]></category>

		<guid isPermaLink="false">http://www.thecreditprotector.com/blog/?p=544</guid>
		<description><![CDATA[Health care related businesses have only two more days to prepare a data breach notification plan. A new rule requiring that health care providers, insurers and clearinghouses must notify individuals whose information has been inappropriately accessed goes into effect September 23.
Additionally, the data breach notification rule applies to any business associates of any entity covered [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="" src="http://www.umpqua.edu/Programs/images/medical_records.jpg" title="Medical records" class="alignleft" width="160" height="185" style="margin:10px" />Health care related businesses have only two more days to prepare a data breach notification plan. A new rule requiring that health care providers, insurers and clearinghouses must notify individuals whose information has been inappropriately accessed goes into effect September 23.</p>
<p>Additionally, the data breach notification rule applies to any business associates of any entity covered by HIPAA.</p>
<p>The notification is to be made “as soon as reasonably possible,” but in most cases within 60 days of discovery. An exception to this provision is made if law enforcement requests a delay, a common occurrence when an investigation is ongoing, particularly if the breach appears to affect a large number of people or is part of a larger scam.</p>
<p>However, even if notification takes place within 60 days, but the Department of Health and Human Services (HHS) could determine the covered entity failed to meat the provision if notification could have been made sooner.</p>
<p>If the breach involves 500 or more people, HHS and the media have to be notified. All other smaller breaches should be reported annually.</p>
<p>Another exception to the rule is encrypted or destroyed information. If a hacker breaks into a server or database that the health care entity has taken measures to adequately protect, the entity is off the hook and doesn’t have to make any notification.</p>
<p>Data breach is defined as “the acquisition, access, use or disclosure of protected health information in a manner not permitted (by the HIPAA Privacy Rule) that compromises the security or privacy of the protected health information” or that means a “significant risk of financial, reputational or other harm to the individual.”</p>
<p>The rule is part of an alphabet soup of new legislation. It applies to any entity covered by the Health Insurance Portability and Accountability Act (HIPAA), and is part of the new Health Information Technology for Economic and Clinical Health (HITECH) Act, which is part of the American Recovery and Reinvestment Act of 2009 (ARRA).</p>
]]></content:encoded>
			<wfw:commentRss>http://www.thecreditprotector.com/blog/2009/09/sept-23-deadline-for-health-care-data-breach-id-theft-risk-notification-rules/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Utah&#8217;s new Canyons School District notifies 6,000 employees of data breach</title>
		<link>http://www.thecreditprotector.com/blog/2009/07/utahs-new-canyons-school-district-notifies-6000-employees-of-data-breach/</link>
		<comments>http://www.thecreditprotector.com/blog/2009/07/utahs-new-canyons-school-district-notifies-6000-employees-of-data-breach/#comments</comments>
		<pubDate>Tue, 14 Jul 2009 21:37:50 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[data breach notification]]></category>
		<category><![CDATA[Canyons School District]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[flash drive]]></category>
		<category><![CDATA[Jennifer Toomer-Cook]]></category>
		<category><![CDATA[LifeLock promo code]]></category>
		<category><![CDATA[Margot McCallum]]></category>
		<category><![CDATA[USB drive]]></category>

		<guid isPermaLink="false">http://www.thecreditprotector.com/blog/?p=325</guid>
		<description><![CDATA[Parents and students in Utah’s new Canyons School District might be looking forward to back to school sales, but this year, 6,000 school employees have to worry that identity thieves might be shopping on their dime.
The district offices sent out notification letters last Friday, telling the employees about a lost USB flash drive that holds [...]]]></description>
			<content:encoded><![CDATA[<p>Parents and students in Utah’s new Canyons School District might be looking forward to back to school sales, but this year, 6,000 school employees have to worry that identity thieves might be shopping on their dime.<img style="margin:10px" src="http://www.gaffmag.net/images/targetlady.jpg" alt="targetlady1" title="targetlady1" width="300" height="200" class="alignright size-full wp-image-335" /></p>
<p>The district offices sent out notification letters last Friday, telling the employees about a lost USB flash drive that holds 6,000 employees’ addresses, phone numbers, birth dates and Social Security numbers.</p>
<p>Apparently, a district-level employee had a legitimate purpose for storing the data on the flash drive, but maybe has a little bit of a problem with short-term memory. “At, this point we have no reason to believe the information was stolen or used to perpetuate fraud or identity theft,” said Jennifer Toomer-Cook, spokeswoman for the district.</p>
<p>To their credit, the school district mailed the notification letters only two days after the data breach was reported. The letters provided employees with a Web address where they can initiate a 90-day fraud alert or credit freeze, but didn’t mention anything about their paying for their employees’ credit monitoring or identity theft protection services.</p>
<p>And they did try to assuage the concerns of district employees by saying they are working to improve security policies and building a secure network for file transfers.</p>
<p>Unfortunately, those changes are too late for the employees left at risk of identity theft.</p>
<p>“ID theft is the designer crime of the day. Of all the people I trust with my information, my employer is paramount. So, yes, I am concerned,” said Margot McCallum, a middle school teacher.</p>
<p>Visit LifeLock.com to learn more about their innovative tools and strategies for protecting the identities of their nearly 1.5 million customers. Enroll using the LifeLock promo code DEFENSE and pay only $9 a month for comprehensive identity theft protection services, and get 30 days of free protection.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.thecreditprotector.com/blog/2009/07/utahs-new-canyons-school-district-notifies-6000-employees-of-data-breach/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ITRC 2009 data breach study full of bad news</title>
		<link>http://www.thecreditprotector.com/blog/2009/06/itrc-2009-data-breach-study-full-of-bad-news/</link>
		<comments>http://www.thecreditprotector.com/blog/2009/06/itrc-2009-data-breach-study-full-of-bad-news/#comments</comments>
		<pubDate>Thu, 25 Jun 2009 19:04:45 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[data breach notification]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[data breach notification law]]></category>
		<category><![CDATA[Identity Theft Resource Center]]></category>
		<category><![CDATA[ITRC]]></category>
		<category><![CDATA[Linda Foley]]></category>

		<guid isPermaLink="false">http://www.thecreditprotector.com/blog/?p=292</guid>
		<description><![CDATA[The Identity Theft Resource Center released the results this week of their most recent data breach study, an analysis of data breaches publicly reported so far this year. Little of the news is good, but two of the ITRC’s findings are especially alarming.
Perhaps the most disturbing discovery is that of the roughly 250 reported breaches, [...]]]></description>
			<content:encoded><![CDATA[<p>The Identity Theft Resource Center released the results this week of their most recent data breach study, an analysis of data breaches publicly reported so far this year. Little of the news is good, but two of the ITRC’s findings are especially alarming.</p>
<p>Perhaps the most disturbing discovery is that of the roughly 250 reported breaches, only one of the victims could say the stolen information was encrypted.</p>
<p>Almost every state has laws compelling entities to report data breaches, but apparently even the fear of public disclosure and bad publicity still isn’t enough to make businesses and other organizations protect the data they hold.</p>
<p>“It’s a dual problem here undeterred by law or common sense,” said Linda Foley, co-founder of the ITRC. “You’d think if all these organizations have to notify, that they would take some steps to make sure their data doesn’t get exposed in the first place.”</p>
<p>Another surprising finding is that employees are stealing records at the same rate as hackers. Together, the two types of attacks are responsible for 36.4% of the roughly 250 data breaches reported publicly this year as of June 12.</p>
<p>The only good news to be found in the study is that the total number of data breaches is down by roughly 30% from the same time last year when 342 breaches had already been reported.</p>
<p>Unfortunately, even that slight ray of sunshine is dimmed by the fact that at least 12 million businesses and consumers are affected by this year’s data breaches, and the total is probably far greater than that; fewer than half of the entities that reported breaches revealed the number of victims affected.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.thecreditprotector.com/blog/2009/06/itrc-2009-data-breach-study-full-of-bad-news/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Study confirms need for LifeLock’s reliable identity theft protection</title>
		<link>http://www.thecreditprotector.com/blog/2008/10/study-confirms-need-for-lifelock%e2%80%99s-reliable-identity-theft-protection/</link>
		<comments>http://www.thecreditprotector.com/blog/2008/10/study-confirms-need-for-lifelock%e2%80%99s-reliable-identity-theft-protection/#comments</comments>
		<pubDate>Wed, 15 Oct 2008 15:09:22 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[data breach]]></category>
		<category><![CDATA[data breach notification]]></category>
		<category><![CDATA[LifeLock]]></category>
		<category><![CDATA[LifeLock identity theft protection]]></category>

		<guid isPermaLink="false">http://www.thecreditprotector.com/?p=70</guid>
		<description><![CDATA[A recent survey of 3,596 information technology professionals produced findings that 79% of the organizations they represent have had at least one known data breach. The IT pros surveyed revealed even more shocking news; insiders were responsible for 75% of the data breaches, compared to the 1% of data breaches that are conducted by hackers.
“This [...]]]></description>
			<content:encoded><![CDATA[<p>A recent survey of 3,596 information technology professionals produced findings that 79% of the organizations they represent have had at least one known data breach. The IT pros surveyed revealed even more shocking news; insiders were responsible for 75% of the data breaches, compared to the 1% of data breaches that are conducted by hackers.</p>
<p>“This study shows that both personal and corporate information is flowing out of the organizations entrusted with its confidentiality,” said Dr. Larry Ponemon, chairman and founder of the Ponemon Institute.<span id="more-70"></span><br />
The survey was commissioned by Compuware Corporation, and conducted by the Ponemon Institute. The survey respondents hailed from the US, UK, France and Germany, and had an average of nine years experience.</p>
<p>These results follow the results of another survey that revealed that only 50% of organizations that experience data breaches notify their customers and clients; only 40% notify authorities.</p>
<p>Though the results of both studies are infuriating, there is hope. LifeLock professional identity theft protection services is a great way to protect your personal and financial information.</p>
<p>LifeLock is the service of choice for almost 1.5 million Americans. LifeLock has partnered with the FBI, AARP, and dozens of private businesses organizations to help protect the identities and credit of their constituents.</p>
<p><em>Since January 2005 nearly 250 million records have been lost or stolen in data breaches. If you’ve ever thought you needed, but couldn’t afford, a professional identity theft protection service, this is the perfect time to learn more about LifeLock. Right now, LifeLock is offering their comprehensive ID protection programs at a discounted rate, when you use the LifeLock promo code Defense.</em></p>
<p><em>Visit LifeLock.com for more information.</em></p>
]]></content:encoded>
			<wfw:commentRss>http://www.thecreditprotector.com/blog/2008/10/study-confirms-need-for-lifelock%e2%80%99s-reliable-identity-theft-protection/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Few companies notify customers of data breach</title>
		<link>http://www.thecreditprotector.com/blog/2008/10/few-companies-notify-customers-of-data-breach/</link>
		<comments>http://www.thecreditprotector.com/blog/2008/10/few-companies-notify-customers-of-data-breach/#comments</comments>
		<pubDate>Thu, 09 Oct 2008 18:06:07 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[data breach notification]]></category>
		<category><![CDATA[credit protection]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[data breach notification law]]></category>
		<category><![CDATA[ID theft]]></category>
		<category><![CDATA[ID theft protection]]></category>
		<category><![CDATA[identity theft]]></category>
		<category><![CDATA[identity theft protection]]></category>

		<guid isPermaLink="false">http://www.thecreditprotector.com/?p=55</guid>
		<description><![CDATA[By now just about everyone you know has gotten the dreaded data breach letter: “Dear Customer, we regret to inform you we have become aware…” If you haven’t gotten this letter yet, that doesn’t mean your information hasn’t been exposed.
A recent survey of 300 companies by Logica&#8211;an information technology security firm—revealed that only 40% of [...]]]></description>
			<content:encoded><![CDATA[<p>By now just about everyone you know has gotten the dreaded data breach letter: “Dear Customer, we regret to inform you we have become aware…” If you haven’t gotten this letter yet, that doesn’t mean your information hasn’t been exposed.</p>
<p>A recent survey of 300 companies by Logica&#8211;an information technology security firm—revealed that only 40% of the companies who experienced data breaches notified their customers. Only 50% of the companies notified police or other authorities. Only 30% of them give their employees training on how to prevent or respond to data breaches.<span id="more-55"></span></p>
<p>To date, only six states (South Dakota, New Mexico, Missouri, Kentucky, Alabama and Mississippi) have failed to enact laws that require customers be notified when their information has been lost or stolen. And there is as yet no federal law requiring them to do so. Even in the states that require notification, apparently companies still aren&#8217;t doing it.</p>
<p>Since January 2005 almost 250 billion records are known to have been lost or stolen. Because, in many instances, the private or public agencies cannot determine how many records have been exposed, the total number is actually much higher.</p>
<p>So, if you can’t trust the people who control your personal and financial information to responsibly protect it, how can you protect yourself from identity theft?</p>
<p><em>Visit LifeLock.com to see how their award-winning service works. Use LifeLock’s promo code “Defense” and let them save you money while they’re saving your credit. <a href="http://LifeLock-Promo-Code.net/Defense.aspx?AID=1236&amp;SID=TCP">Click here to enroll now.</a></em></p>
]]></content:encoded>
			<wfw:commentRss>http://www.thecreditprotector.com/blog/2008/10/few-companies-notify-customers-of-data-breach/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
