The open and unprotected medical record databases belonging to the management firms Carebox and HealthELT were found by MacKeeper's experts.
The databases, which were neither encrypted nor password-protected, held the confidential medical information of more than 150,000 patients.
Before the MacKeeper specialists contacted the corporations, the organizations had discovered and fixed the cybersecurity flaw.
The databases definitely held Social Security numbers and other sensitive information, therefore the experts questioned the accuracy of that claim.
Source: https://mackeeper.com/blog/data-breach-reports-2016/
TPRM report: https://scoringcyber.rankiteo.com/company/carebox-healthcare-solutions-inc-
"id": "car42221823",
"linkid": "carebox-healthcare-solutions-inc-",
"type": "Data Leak",
"date": "06/2016",
"severity": "85",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'customers_affected': 150000,
'industry': 'Healthcare',
'name': 'Carebox',
'type': 'Management Firm'},
{'customers_affected': 150000,
'industry': 'Healthcare',
'name': 'HealthELT',
'type': 'Management Firm'}],
'attack_vector': 'Unprotected Database',
'data_breach': {'data_encryption': 'None',
'number_of_records_exposed': 150000,
'personally_identifiable_information': 'Social Security '
'numbers',
'sensitivity_of_data': 'High',
'type_of_data_compromised': 'Social Security numbers and '
'other sensitive information'},
'description': 'The open and unprotected medical record databases belonging '
'to the management firms Carebox and HealthELT were found by '
"MacKeeper's experts. The databases, which were neither "
'encrypted nor password-protected, held the confidential '
'medical information of more than 150,000 patients. Before the '
'MacKeeper specialists contacted the corporations, the '
'organizations had discovered and fixed the cybersecurity '
'flaw. The databases definitely held Social Security numbers '
'and other sensitive information, therefore the experts '
'questioned the accuracy of that claim.',
'impact': {'data_compromised': 'Social Security numbers and other sensitive '
'information',
'systems_affected': 'Medical record databases'},
'post_incident_analysis': {'corrective_actions': 'Fixing the cybersecurity '
'flaw',
'root_causes': 'Lack of Encryption and Password '
'Protection'},
'references': [{'source': 'MacKeeper'}],
'response': {'containment_measures': 'Fixing the cybersecurity flaw'},
'title': 'Unprotected Medical Record Databases of Carebox and HealthELT',
'type': 'Data Exposure',
'vulnerability_exploited': 'Lack of Encryption and Password Protection'}