UCLA Breach Class Action: Caution For Connecticut Hospitals

A proposed class action filed in California federal court on July 20 (Allen v. UCLA Health Systems Auxiliary et al., case no. 2:15-cv-05487 in the U.S. District Court for the Central District of California) alleges that the UCLA Health System Auxiliary and The Regents of the University of California (together, "UCLA Health") failed to adequately secure the private financial and health information of 4.5 million patients receiving services at their hospitals. The patient information was stored in an unencrypted state on a server that was accessed by cyber thieves. Generally, healthcare organizations require that data be encrypted in transit (such as email) or on mobile devices. This lawsuit takes the standard one step further and claims that private financial and health datamust be encrypted even when stored on an internal server. The plaintiff accuses UCLA Health of fraud, invasion of privacy, breach of contract, negligence, and violating California laws, including the Confidentiality of Medical Information Act ("CMIA") and California's Unfair...

To continue reading

Request your trial

VLEX uses login cookies to provide you with a better browsing experience. If you click on 'Accept' or continue browsing this site we consider that you accept our cookie policy. ACCEPT