Feeds

5,000 NHS records vanish with latest lost laptop

Wonder why they ever called them NHS Trusts...

Choosing a cloud hosting partner with confidence

A laptop containing medical records for more than 5,000 people has been lost by a hospital near Dudley.

The latest data giveway occurred on 8 January. The laptop was taken from an outpatients department at Russells Hall Hospital.

West Midlands Police is investigating the theft and several thousand people have received warning letters telling them their data could be at risk.

The Dudley Group of Hospitals Trust told us patient data would be difficult to access because: "The database is password/login protected and a separate trust login and password is required to operate the laptop." Which sounds like better practice than that managed by most of the government.

The trust is in the process of putting data encryption software on all its laptops after a review last year. It will also encrypt data on all other mobile devices including PDAs and memory sticks. It has further hired an independent penetration tester to audit its network.

The trust apologised to patients affected.

Mike Small, director of security at CA said: "It almost seems like data loss is becoming the norm rather than a significant event at the moment, and that is worrying. In this case, it seems to point to a lack of value that organisations are putting on this sort of personal data. I'm not so sure it would have been so easily stolen if it was a briefcase full of cash."

The theft is the latest in a series of government department screw-ups which have seen as many as 37 million UK citizens have their personal data lost or stolen.

HMRC twice lost 25 million records relating to child benefits, the DVLA lost 6,000 records for vehicle owners, and the MoD misplaced a laptop containing details of 600,000 applicants to the armed services.

The government has hired Information Commissioner Richard Thomas and Dr Mark Walport to run the "Data Sharing Review" - a consultation on how and why data is shared and used by different departments. ®

Beginner's guide to SSL certificates

More from The Register

next story
Facebook pays INFINITELY MORE UK corp tax than in 2012
Thanks for the £3k, Zuck. Doh! you're IN CREDIT. Guess not
Happiness economics is bollocks. Oh, UK.gov just adopted it? Er ...
Opportunity doesn't knock; it costs us instead
YARR! Pirates walk the plank: DMCA magnets sink in Google results
Spaffing copyrighted stuff over the web? No search ranking for you
In the next four weeks, 100 people will decide the future of the web
While America tucks into Thanksgiving turkey, the world will be taking over the net
Microsoft EU warns: If you have ties to the US, Feds can get your data
European corps can't afford to get complacent while American Big Biz battles Uncle Sam
Don't bother telling people if you lose their data, say Euro bods
You read that right – with the proviso that it's encrypted
prev story

Whitepapers

Choosing cloud Backup services
Demystify how you can address your data protection needs in your small- to medium-sized business and select the best online backup service to meet your needs.
Forging a new future with identity relationship management
Learn about ForgeRock's next generation IRM platform and how it is designed to empower CEOS's and enterprises to engage with consumers.
Security for virtualized datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.
Reg Reader Research: SaaS based Email and Office Productivity Tools
Read this Reg reader report which provides advice and guidance for SMBs towards the use of SaaS based email and Office productivity tools.
Storage capacity and performance optimization at Mizuno USA
Mizuno USA turn to Tegile storage technology to solve both their SAN and backup issues.