Security Incident Impacts Gillette Children’s Patients
Nuance Communications, Inc., a provider of radiology image exchange services, recently had a security incident where medical information about Gillette Children’s patients was accessed by an unauthorized third-party.
What Happened?
Gillette uses a service provided by Nuance to exchange radiology images, such as X-rays, MRIs, and other imaging studies, with other healthcare organizations. As a part of that service, Nuance uses software called MOVEit from Progress Software.
On May 31, 2023, Progress Software reported a previously unknown vulnerability in their software that allowed an unauthorized third party to access information from MOVEit Transfer. Nuance secured its systems and initiated an investigation. On July 17, 2023, it was confirmed that some of the personal information of Gillette Children’s patients was affected by this incident. Gillette Children’s was notified of the incident on August 7, 2023.
The personal information potentially compromised includes patient name, date of service, service provided, practitioner name, facility name, and for some patients, the medical record number.
What You Can Do
While there is no evidence of misuse of the information involved in this event, you may take these steps to help protect your data:
Monitor your financial statements carefully. If you see any unauthorized or suspicious activity, promptly contact your bank, credit union, or credit card company.
Monitor your credit reports for suspicious or unauthorized activity. Under U.S. law you are entitled to one free credit report annually from each of the three major credit reporting bureaus. To order your free credit report, visit www.annualcreditreport.com or call, toll-free, 1-877-322-8228. You may also contact the three major credit bureaus directly to request a free copy of your credit report:
Experian
P.O. Box 9554
Allen, TX 75013
1-888-397-3742
https://www.experian.com
TransUnion
P.O. Box 2000
Chester, PA 19106
1-800-680-7289
https://www.transunion.com
Equifax
P.O. Box 105069
Atlanta, GA 30348
1-888-766-0008
https://www.equifax.com/personal
Data privacy and security are among Gillette’s highest priorities. We have measures in place to evaluate the safety of patient information with our third-party vendors.
Please know that we deeply regret this incident and for any inconvenience it may cause you. You can learn more about this incident by visiting MOVEit Support | Nuance. If you have any questions or concerns regarding this matter please contact qualityrep@gillettechildrens.com or call 1-855-202-4484.