A medical practice in Co Armagh has signed an undertaking with the UK regulator to improve how it looks after patients’ information following a data security breach.
The data breach happened when the free web-based email account used by medical centre used to inform patients of upcoming smear test appointments was hacked.
The practice only became aware of the problem when patients reported receiving strange emails claiming to be from a doctor at the surgery, asking them to provide their bank account details.
Although in this instance no sensitive information was accessed by the hackers on the email account, the account included the email addresses of approximately 175 of the practice’s patients which is in itself a serious breach of confidentiality.