Catastrophic Breach Of A Law Firm And A County Office - Above the Law
Briefly

Recent data breaches have underscored the vulnerabilities of medical facilities and law firms, particularly in managing sensitive information. Bassford Remele, a Minnesota law firm, reported a breach affecting patient records, believed to have occurred between July and September 2024. Unauthorized emails were sent from a compromised employee account. Similarly, Scott County, Iowa, confirmed an employee's email hack exposing data for over 4,300 people. As these incidents highlight persistent security threats, experts recommend firms implement multifactor authentication for email accounts to significantly enhance security.
Enable Multifactor Authentication on all email accounts and make it a requirement for access. Even if an attacker has a user's credentials, they wouldn't have the second factor needed to access the account through the browser.
The breach notice on its website indicated that an unauthorized party may have accessed and potentially compromised sensitive personal information in its systems, including Social Security numbers and medical records.
Read at Above the Law
[
|
]