Hackers breach Environment Protection Agency database

Thousands of U.S. Environmental Protection Agency (EPA) employees had their personal information exposed through a database breach.

How many victims? 7,800, comprised of 5,100 current employees and 2,700 others.

What type of personal information? Social Security numbers, bank routing numbers and home addresses.

What happened? The hackers were able to compromise a server that stores data related to the Superfund program. They obtained access by tricking an employee to click on an email that contained a malicious attachment.

What was the response? The EPA is choosing to remain coy about the breach, which happened in March, but only was just reported to victims, due to the sensitivity of the information involved. Officials said they took so long to notify affected individuals because they were trying to identify who they were.

Details: The affected server may have been managed by third-party contractors.

Source: Washington Business Journal, "EPA breach involved program widely supported by contractors," Aug. 3, 2012.

close

Next Article in The Data Breach Blog

Advertisement

How to Prevent Insider Threats!

POLL

More in The Data Breach Blog

Hackers raid Washington state court system to steal 160,000 SSNs, 1M driver's license numbers

Hackers raid Washington state court system to steal ...

After the public website of the Washington state Administrative Office of the Courts was compromised in February, an investigation revealed the severity of the breach in April.

Personal California birth records found in "unsecure" location

The California Department of Public Health announced that the data included names, addresses, Social Security numbers, and medical information.

Investment regulator loses portable device containing personal data

Although the specifics of the lost information is unknown, the Investment Industry Regulatory Organization of Canada has announced that 52,000 clients of 32 brokerage firms have been affected.