"On February 11, 2025, Blue Shield discovered that, between April 2021 and January 2024, Google Analytics was configured in a way that allowed certain member data to be shared with Google's advertising product, Google Ads, that likely included protected health information," reads the notice. Blue Shield of California disclosed it suffered a data breach after exposing protected health information of 4.7 million members to Google's analytics and advertisement platforms. The nonprofit health plan, which serves nearly 6 million members across California, published a data breach notification on its website stating that member data was exposed between April 2021 and January 2024. Today, the United States Department of Health and Human Services breach portal was updated to state that the leak exposed 4.7 million members' protected health data. Last year, nearly one million health plan members had their data stolen by BlackSuit ransomware actors who breached the organization's software solutions provider, Connexure (formerly Young Consulting).
This Cyber News was published on www.bleepingcomputer.com. Publication date: Wed, 23 Apr 2025 15:40:12 +0000