• Skip to main content
  • Skip to header right navigation
  • Skip to site footer
iGuRu

iGuRu

Real-time Technology News. Opinions & Tweaks

  • / news
  • / tools
  • / tweaks
  • / dummies
  • / opinions
  • / support
  • / yourpost
home / News / 45 million medical operations exposed on the internet

45 million medical operations exposed on the internet

16/12/2020 11:24 by Dimitris

More than 45 million medical procedures and results, including X-rays and CT scans, have been left exposed on unprotected servers.

DerbyCon medical devices - 45 million medical procedures exposed on the internet

According to a revealing report by CybelAngel There are millions of sensitive medical results, including personal health care information, available without encryption and password protection.

No username or password required
Analysts found that available medical results, including up to 200 lines of metadata per record, containing personally identifiable information such as name, date of birth, address, height, weight, diagnosis, etc., could be viewed without the need for a username. or password. In some cases, gateways accepted blank usernames and passwords.

"The fact that we did not use any piracy tools in our research underscores the ease with which we have been able to discover and access these files," said David Sygula, an analyst at CybelAngel.

"This is a worrying finding and demonstrates that stricter security procedures need to be put in place to protect the way in which sensitive medical data is communicated and stored by health professionals. "The balance between security and accessibility is imperative to prevent data leakage."

Todd Carroll, CISO of CybelAngel, further commented: “Medical centers work with a vast, interconnected network of third-party providers and the cloud is an essential platform for data sharing and storage. However, security vulnerabilities pose a huge risk, both to individuals whose data has been compromised and to health care facilities governed by patient data protection regulations.

"The health sector has faced unprecedented challenges this year, but the security and confidentiality of most of their patients' personal records must be protected to prevent confidential data from falling into the wrong hands."

Security risks for accessible results
The report emphasizes the security risks of publicly available results that contain highly personal information, such as ransomware and blackmail. This type of data earns a premium on the dark web.

In terms of compliance, healthcare providers are also subject to regulatory sanctions, such as the GDPR in Europe and the HIPAA in the US, for breaches of sensitive patient information.

45 million medical operations exposed on the internet was last modified: 16 December, 2020, 11: 24 am by Dimitris

spread the news

  • Facebook
  • Twitter
  • Reddit
  • Printing
  • Email

Read them Technology News from all over the world, with the validity of iGuRu.gr

Follow us on Google News


Competition: Newstag: CyberAngel, medical, ransomware, medicine

You May Also Like

Hacked the forum of the software company IOBit
ransomware
Ransomware Task Force new team with Microsoft and McAfee
Gootkit returned in parallel with REvil ransomware

About Us Dimitris

Dimitris hates on Mondays .....

Previous Post: « Five alternatives to Google Photos
Next Post: Australia has sued Facebook for espionage »

Reader Interactions

Comment Policy:

IGuRu.gr does not publish the comments immediately. Malicious comments, comments that include ads, or comments that are offensive are deleted without notice. We do not adopt the opinions expressed by our readers.
Your comments will be displayed after approval by the administrators


Leave your comment
Ακύρωση απάντησης

Your email address is not published. Τα υποχρεωτικά πεδία σημειώνονται με *

 

 © 2021 · iGuRu.gr · ☢ · Keep It Simple Stupid Genesis theme

about  ·   get in touch  ·  rss  ·  sitemap  ·  cough

loading Cancel
Could not post post - check your email address!
Email verification failed, please try again
Your blog can not post posts via email.