HT TECH wants to start sending you push notifications. Click allow to subscribe

India unprepared to protect medical data: Researcher

This data can be used by hackers for making phishing attacks and social engineering even more effective.

By: HT TECH
Updated on: Aug 20 2022, 21:21 IST
The security researcher says that all of this information is left on the internet “unprotected with no password.” (Pixabay)

Data security and data privacy are two of the most important concepts of the modern era. While the European Union has already formed stringent laws to protect users’ data, others like the US and India are in the process of framing their own laws. Amid the given circumstances, a researcher has detailed how unprepared India to handle its medical data.

Security research Sai Krishna Kothapalli in a blog post on Medium has detailed how easy it is for anyone to access medical records of patients across states and hospitals, both government and private, in India. In a post titled “How screwed is India’s healthcare data?”, Kothapalli explains how he was able to access medical records of patients in various hospitals in India such as Govt Head QTRS Hospital Krishnagiri, KGM Hospital Pvt Ltd, and Govt Hospital Ooty among others.

You may be interested in

Mobiles Tablets Laptops
7% OFF
Apple iPhone 15 Pro Max
  • Black Titanium
  • 8 GB RAM
  • 256 GB Storage
₹148,900₹159,900
Buy now
23% OFF
Samsung Galaxy S23 Ultra 5G
  • Green
  • 12 GB RAM
  • 256 GB Storage
₹115,999₹149,999
Buy now
Google Pixel 8 Pro
  • Obsidian
  • 12 GB RAM
  • 128 GB Storage
₹106,998
Check details
Apple iPhone 15 Plus
  • Black
  • 6 GB RAM
  • 128 GB Storage
₹87,900
Check details
21% OFF
Acer Swift Go SFG14 41 NX KG3SI 002 Laptop
  • Pure Silver
  • 8 GB RAM
  • 512 GB SSD
₹58,990₹74,999
Buy now
39% OFF
Acer Aspire 5 A515 57G Laptop
  • Gray
  • 16 GB RAM
  • 512 GB SSD
₹54,949₹89,999
Buy now
22% OFF
Acer Aspire 3 A315 24 NX KDESI 004 Laptop
  • Silver
  • 8 GB RAM
  • 512 GB SSD
₹33,499₹42,999
Buy now
39% OFF
Asus VivoBook 15 X515JA BQ322WS Laptop
  • Transparent Silver
  • 8 GB RAM
  • 512 GB SSD
₹31,490₹51,990
Buy now
34% OFF
Xiaomi Pad 6
  • Mist Blue
  • 6 GB RAM
  • 128 GB Storage
₹26,299₹39,999
Buy now
55% OFF
Lenovo Tab M10 5G
  • Abyss Blue
  • 6 GB RAM
  • 128 GB Storage
₹20,999₹47,000
Buy now
32% OFF
Realme Pad 2
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹19,790₹28,999
Buy now
Honor Pad X9
  • Gray
  • 4 GB RAM
  • 128 GB Storage
₹14,999
Check details

There are two ways using which data inside PACS (Picture Archiving and Communication System) or servers that store medical images can be accessed. First is by directly connecting with the PACS servers. “As on February 11, 2020, there are 305 PACS available online in India. Out of which 193 of them are available to connect without any kind of password or restriction,” wrote in a blog post adding, “All you need to know to access this data is which IP address these servers are running on and connect using any software which can retrieve and view DICOM files.”

Kothapalli was able to access more than 1,51,646 patient records, which contains personal information such as name, age, date of birth, patient ID, referring physician, performing physician, hospital or imaging centre, using this method as of 4th June 2020. He says that all of this information is left on the internet “unprotected with no password.”

The second method involves using a web interface. While these web interfaces ask for a username and a password, the security researcher was able to access patients’ healthcare records of various public and government hospitals simply by typing admin:admin as username and password. What is scary is that the security researcher was not only able to view these records but he was also able to edit and even delete these records.

The researcher says that this data could be exploited by hackers for a variety of purposes. “These include publishing individual names and images to the detriment of a person’s reputation; connecting the data with other Darknet sources to make phishing attacks and social engineering even more effective,” he wrote in the post.

Catch all the Latest Tech News, Mobile News, Laptop News, Gaming news, Wearables News , How To News, also keep up with us on ,Twitter, Facebook, , and Instagram. For our latest videos, subscribe to our YouTube channel.

First Published Date: 08 Jun, 20:07 IST

Sale

Mobiles Tablets Laptops
4% OFF
Samsung Galaxy S24 Ultra
  • Titanium Black
  • 12 GB RAM
  • 256 GB Storage
₹129,999₹134,999
Buy now
7% OFF
Apple iPhone 15 Pro Max
  • Black Titanium
  • 8 GB RAM
  • 256 GB Storage
₹148,900₹159,900
Buy now
13% OFF
Xiaomi 14
  • Matte Black
  • 12 GB RAM
  • 512 GB Storage
₹69,999₹79,999
Buy now
10% OFF
Apple iPhone 15 Plus
  • Black
  • 6 GB RAM
  • 128 GB Storage
₹80,590₹89,900
Buy now
33% OFF
Xiaomi Pad 6
  • Mist Blue
  • 6 GB RAM
  • 128 GB Storage
₹26,999₹39,999
Buy now
38% OFF
Lenovo Tab M10 5G
  • Abyss Blue
  • 6 GB RAM
  • 128 GB Storage
₹20,999₹34,000
Buy now
28% OFF
Realme Pad 2
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹17,999₹24,999
Buy now
21% OFF
Samsung Galaxy Tab S8
  • Silver
  • 8 GB RAM
  • 128 GB Storage
₹54,999₹69,999
Buy now
38% OFF
Acer Aspire 3 A315 24 NX KDESI 004 Laptop
  • Silver
  • 8 GB RAM
  • 512 GB SSD
₹32,790₹52,999
Buy now
25% OFF
Asus ROG Zephyrus G14 GA401QC HZ094TS Laptop
  • Grey
  • 16 GB RAM
  • 1 TB SSD
₹100,900₹135,000
Buy now
30% OFF
Asus TUF Gaming F17 FX777ZM HX029WS Laptop
  • Jaeger Gray
  • 16 GB RAM
  • 1 TB SSD
₹57,990₹82,990
Buy now
39% OFF
Asus Vivobook K15 OLED 90NB0SG3 M43720 Laptop
  • Hearty GOLD
  • 8 GB RAM
  • 1 TB HDD
₹34,990₹56,990
Buy now
NEXT ARTICLE BEGINS