Data Breach Update: DNA Diagnostics Center, Inc.

Console and Associates, P.C.
Contact

On August 6, 2021, DNA Diagnostics Center, Inc. detected unauthorized access to their network gaining access to sensitive information belonging to approximately 2,102,436 individuals. Varying by patient, the information accessed may include patients’ Social Security numbers. On November 29, 2021, DNA Diagnostics Center, Inc. began sending out data breach notification letters to those affected by the security breach.

If you received a data breach notification, it is essential you understand what is at risk and what you can do about it. More about what you can do if your data was stolen is available in our prior blog post, "A Guide For Victims of a Data Breach”.

We have obtained a copy of the initial data breach letter issued by DNA Diagnostics Center, Inc.:

Data Security Incident Information Center - DDC

We will keep this page updated with actions we are taking, including free credit monitoring and identity theft protection services for those whose personal information was potentially accessed.

What happened?

On August 6, 2021, DNA Diagnostics Center, Inc. (DDC) detected potential unauthorized access to its network, during which there was unauthorized access and acquisition of an archived database that contained personal information collected between 2004 and 2012. The impacted database was associated with a national genetic testing organization system that DDC acquired in 2012. This system has never been used in DDC’s operations and has not been active since 2012.

Therefore, impacts from this incident are not associated with DDC. However, impacted individuals may have had their information, such as Social Security number or payment information, impacted as a result.

Upon learning of this issue, DDC proactively contained and secured the threat and executed a prompt and thorough investigation in consultation with third-party cybersecurity professionals. DDC has also coordinated closely with law enforcement following the discovery of this incident. Our investigation determined that the unauthorized individual(s) potentially removed certain files and folders from portions of our database between May 24, 2021 and July 28, 2021. DDC has been and remains fully operational, and the systems and databases that are actively used by DDC were not infiltrated.

The in-depth investigation concluded on October 29, 2021, and DDC has begun notifying individuals potentially affected by this incident.

How will you know if you were impacted?

If you know you have received a relationship test from DDC directly, this incident did not affect that test, as the information was acquired from an archived system that was never used by DDC.

Individuals whose personal information was potentially accessed are being notified in accordance with state regulations, and out of an abundance of caution to protect against identity fraud, DDC is providing a complimentary membership of Experian credit monitoring to eligible individuals.

If you received a relationship test as a part of court proceedings or independent, individual testing between 2004 and 2012 but have not received a mailed letter from DDC regarding this incident, please contact 1-855-604- 1656 as you may be eligible for complimentary credit monitoring services through Experian.

What is DDC doing?

DDC has taken steps, in coordination with its third-party cybersecurity experts, to regain possession of this personal information and ensure its safekeeping. DDC is not aware of any reports of identity fraud or improper use of the information.

Additionally, out of an abundance of caution, we are offering free credit monitoring for impacted individuals to protect against identity fraud – see below for more information. Ensuring the safety and security of the personal information entrusted to us remains our primary responsibility, and we will continue to work with third-party experts to harden our cybersecurity defenses.

If you have any further questions regarding this incident, please call our dedicated and confidential toll-free response line that we have set up to respond to questions at 1-855-604-1656 The response line is available Monday through Friday 9:00 AM to 9:00 PM, Eastern Standard Time, excluding U.S. Holidays.

DISCLAIMER: Because of the generality of this update, the information provided herein may not be applicable in all situations and should not be acted upon without specific legal advice based on particular situations. Attorney Advertising.

© Console and Associates, P.C.

Written by:

Console and Associates, P.C.
Contact
more
less

PUBLISH YOUR CONTENT ON JD SUPRA NOW

  • Increased visibility
  • Actionable analytics
  • Ongoing guidance

Console and Associates, P.C. on:

Reporters on Deadline

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
Custom Email Digest
- hide
- hide