Personal Data of More Than 73,000 Patients Affected in Cyberattack On Eye Clinic

Personal Data of More Than 73,000 Patients Affected in Cyberattack On Eye Clinic

File photo of a patient at an eye clinic in Singapore. (File photo: AFP/Mohd Rasfan)

SINGAPORE: Personal data and clinical information of 73,466 patients were affected in a cyberattack on private practice Eye & Retina Surgeons earlier this month, with the root causes of the incident under investigation.

The affected data included patients’ names, addresses, identity card numbers, contact details and clinical information. No credit card or bank account information was accessed or compromised, the specialist eye clinic said in a press release on Wednesday (Aug 25).

The “illegal and sophisticated ransomware cyberattack” was carried out by an unknown party on Aug 6, said the clinic.

It affected servers and several computer terminals at the clinic’s branch in Camden Medical. The IT system at the clinic’s branch in Mount Elizabeth Novena Specialist Centre was not affected.

Also Read: What is Social Engineering and How Does it Work?

“To optimise data security, (Eye & Retina Surgeons) maintains segregated networks and active medical records are maintained separately on a cloud-based system and thus were not accessed or compromised,” the clinic added.

None of the practice’s clinical operations were affected, and its IT systems have been securely restored, it said.

The clinic said there has been no known release of sensitive data into the public domain to date, and that it will continue to monitor the situation closely.

“Patients are now being progressively informed of this cyber-incident,” it added.

The incident has been reported to the police, the Personal Data Protection Commission and the Singapore Computer Emergency Response Team (SingCERT).

Eye & Retina Surgeons said that its IT team has been working closely with the Cybersecurity Agency of Singapore (CSA) and the Ministry of Health (MOH) to investigate the root causes of the incident.

“All necessary measures to prevent a recurrence of this breach will be taken,” said the clinic, adding that it was working with cybersecurity experts and authorities to identify any potential areas in its IT systems that can be further secured.

Also Read: 4 Reasons Why You Need an Actively Scanning Antivirus Software

“(Eye & Retina Surgeons) regrets this breach and wishes to assure its patients that it takes patient confidentiality very seriously,” the clinic said.

This article originally appeared in CNA here.

Privacy Ninja

Recent Posts

Enhancing Website Security: The Importance of Efficient Access Controls

Importance of Efficient Access Controls that every Organisation in Singapore should take note of. Enhancing…

2 weeks ago

Prioritizing Security Measures When Launching Webpage

Prioritizing Security Measures When Launching a Webpage That Every Organisation in Singapore should take note…

2 weeks ago

The Importance of Regularly Changing Passwords for Enhanced Online Security

Importance of Regularly Changing Passwords for Enhance Online Security that every Organisation in Singapore should…

3 weeks ago

Mitigating Human Errors in Organizations: A Comprehensive Approach to Data Protection and Operational Integrity

Comprehensive Approach to Data Protection and Operational Integrity that every Organsiation in Singapore should know…

3 weeks ago

The Importance of Pre-Launch Testing in IT Systems Implementation

Here's the importance of Pre-Launch Testing in IT Systems Implementation for Organisations in Singapore. The…

1 month ago

Understanding Liability in IT Vendor Relationships

Understanding Liability in IT Vendor Relationships that every Organisation in Singapore should look at. Understanding…

1 month ago