/

20/20 Eyecare Data Breach: What & How It Happened?

20/20 Eyecare Data Breach: What & How It Happened?

Twingate Team

Jun 20, 2024

In January 2021, a data breach occurred at 20/20 Eye Care Network and 20/20 Hearing Care Network, affecting their health plan members. The breach involved unauthorized access to the companies' data environment, which contained sensitive patient information. This security incident led to the removal and deletion of certain patient data, impacting both eye care and hearing care patients.

How many accounts were compromised?

The breach impacted data related to approximately 3.3 million individuals.

What data was leaked?

The data exposed in the breach included names, Social Security numbers, dates of birth, member ID numbers, and health insurance information.

How was 20/20 Eyecare hacked?

The unauthorized access to 20/20 Eye Care Network and 20/20 Hearing Care Network's data environment involved an unknown individual infiltrating their AWS cloud storage. The attacker accessed AWS S3 storage buckets, downloaded their contents, and subsequently deleted the data within the buckets. The specific methods used by the hackers and whether any malware was involved remain unclear.

20/20 Eyecare's solution

In response to the hacking incident, the specific enhanced security measures taken by 20/20 Eye Care Network remain unclear. However, the company did notify affected individuals and federal authorities about the data breach. Despite the lack of information on additional security measures, it is reasonable to assume that the company would have taken steps to secure its platform and prevent future incidents, such as working with cybersecurity experts and enhancing security protocols.

How do I know if I was affected?

20/20 Eye Care Network has notified individuals believed to be affected by the breach. If you are a patient of 20/20 Eye Care Network or 20/20 Hearing Care Network and have not received a notification, you may visit HaveIBeenPwned to check your credentials.

What should affected users do?

In general, affected users should:

  • Change Your Passwords: Immediately update your passwords for all affected accounts. Make sure the new passwords are strong and unique, not previously used on any other platform.

  • Reset Passwords for Other Accounts: If you've used the same or similar passwords for other online accounts, reset those as well. This is crucial as attackers often try using stolen passwords on multiple sites.

  • Enable Two-Factor Authentication (2FA): Activate 2FA on all affected accounts. Consider enabling this additional security feature on all other important online accounts to significantly reduce the risk of unauthorized access.

  • Monitor Your Accounts: Keep an eye on your accounts for any suspicious activity and report any unauthorized transactions or changes to the appropriate parties.

For more specific help and instructions related to 20/20 Eyecare's data breach, please contact 20/20 Eyecare's support directly.

Where can I go to learn more?

If you want to find more information on the 2020 Eyecare data breach, check out the following news articles:

Rapidly implement a modern Zero Trust network that is more secure and maintainable than VPNs.

/

20/20 Eyecare Data Breach: What & How It Happened?

20/20 Eyecare Data Breach: What & How It Happened?

Twingate Team

Jun 20, 2024

In January 2021, a data breach occurred at 20/20 Eye Care Network and 20/20 Hearing Care Network, affecting their health plan members. The breach involved unauthorized access to the companies' data environment, which contained sensitive patient information. This security incident led to the removal and deletion of certain patient data, impacting both eye care and hearing care patients.

How many accounts were compromised?

The breach impacted data related to approximately 3.3 million individuals.

What data was leaked?

The data exposed in the breach included names, Social Security numbers, dates of birth, member ID numbers, and health insurance information.

How was 20/20 Eyecare hacked?

The unauthorized access to 20/20 Eye Care Network and 20/20 Hearing Care Network's data environment involved an unknown individual infiltrating their AWS cloud storage. The attacker accessed AWS S3 storage buckets, downloaded their contents, and subsequently deleted the data within the buckets. The specific methods used by the hackers and whether any malware was involved remain unclear.

20/20 Eyecare's solution

In response to the hacking incident, the specific enhanced security measures taken by 20/20 Eye Care Network remain unclear. However, the company did notify affected individuals and federal authorities about the data breach. Despite the lack of information on additional security measures, it is reasonable to assume that the company would have taken steps to secure its platform and prevent future incidents, such as working with cybersecurity experts and enhancing security protocols.

How do I know if I was affected?

20/20 Eye Care Network has notified individuals believed to be affected by the breach. If you are a patient of 20/20 Eye Care Network or 20/20 Hearing Care Network and have not received a notification, you may visit HaveIBeenPwned to check your credentials.

What should affected users do?

In general, affected users should:

  • Change Your Passwords: Immediately update your passwords for all affected accounts. Make sure the new passwords are strong and unique, not previously used on any other platform.

  • Reset Passwords for Other Accounts: If you've used the same or similar passwords for other online accounts, reset those as well. This is crucial as attackers often try using stolen passwords on multiple sites.

  • Enable Two-Factor Authentication (2FA): Activate 2FA on all affected accounts. Consider enabling this additional security feature on all other important online accounts to significantly reduce the risk of unauthorized access.

  • Monitor Your Accounts: Keep an eye on your accounts for any suspicious activity and report any unauthorized transactions or changes to the appropriate parties.

For more specific help and instructions related to 20/20 Eyecare's data breach, please contact 20/20 Eyecare's support directly.

Where can I go to learn more?

If you want to find more information on the 2020 Eyecare data breach, check out the following news articles:

Rapidly implement a modern Zero Trust network that is more secure and maintainable than VPNs.

20/20 Eyecare Data Breach: What & How It Happened?

Twingate Team

Jun 20, 2024

In January 2021, a data breach occurred at 20/20 Eye Care Network and 20/20 Hearing Care Network, affecting their health plan members. The breach involved unauthorized access to the companies' data environment, which contained sensitive patient information. This security incident led to the removal and deletion of certain patient data, impacting both eye care and hearing care patients.

How many accounts were compromised?

The breach impacted data related to approximately 3.3 million individuals.

What data was leaked?

The data exposed in the breach included names, Social Security numbers, dates of birth, member ID numbers, and health insurance information.

How was 20/20 Eyecare hacked?

The unauthorized access to 20/20 Eye Care Network and 20/20 Hearing Care Network's data environment involved an unknown individual infiltrating their AWS cloud storage. The attacker accessed AWS S3 storage buckets, downloaded their contents, and subsequently deleted the data within the buckets. The specific methods used by the hackers and whether any malware was involved remain unclear.

20/20 Eyecare's solution

In response to the hacking incident, the specific enhanced security measures taken by 20/20 Eye Care Network remain unclear. However, the company did notify affected individuals and federal authorities about the data breach. Despite the lack of information on additional security measures, it is reasonable to assume that the company would have taken steps to secure its platform and prevent future incidents, such as working with cybersecurity experts and enhancing security protocols.

How do I know if I was affected?

20/20 Eye Care Network has notified individuals believed to be affected by the breach. If you are a patient of 20/20 Eye Care Network or 20/20 Hearing Care Network and have not received a notification, you may visit HaveIBeenPwned to check your credentials.

What should affected users do?

In general, affected users should:

  • Change Your Passwords: Immediately update your passwords for all affected accounts. Make sure the new passwords are strong and unique, not previously used on any other platform.

  • Reset Passwords for Other Accounts: If you've used the same or similar passwords for other online accounts, reset those as well. This is crucial as attackers often try using stolen passwords on multiple sites.

  • Enable Two-Factor Authentication (2FA): Activate 2FA on all affected accounts. Consider enabling this additional security feature on all other important online accounts to significantly reduce the risk of unauthorized access.

  • Monitor Your Accounts: Keep an eye on your accounts for any suspicious activity and report any unauthorized transactions or changes to the appropriate parties.

For more specific help and instructions related to 20/20 Eyecare's data breach, please contact 20/20 Eyecare's support directly.

Where can I go to learn more?

If you want to find more information on the 2020 Eyecare data breach, check out the following news articles: