Data Protection Academy » Data Protection News » Swiss health insurance company CSS sent billing data to wrong customers
Data breach at CSS: Billing data sent to wrong customers
Date: 27.08.2019
Responsible body: Swiss health insurance CSS
Nature of the data breach: Swiss health insurer CSS sends thousands of statements to wrong customers
Data breach at CSS, once again thousands of billing data have been sent to wrong customers via the online portal of the Swiss health insurance CSS. In the process, complete strangers have had access to the highly sensitive health data of others. According to projections, this could have affected about 12,000 accounts per year.
The health insurance company has already taken measures to ensure that this mistake is not repeated. However, the Office of the Federal Data Protection Commissioner sees no need for further action for the time being.
Categories of data concerned: Health data
Classification in practice: Highly sensitive data
Country: Switzerland (safe third country)
Source: srf.ch
- Compliance management in the company - 13 March 2023
- The Supply Chain Act (LkSG) - 2 January 2023
- Hamburg imposes data protection fine on Facebook - 18 February 2020