The NHS is blaming a coding error for 150,000 patients in England being involved in a data breach.
There was a problem with the software used by GPs to record objections to the same data being used for research and auditing purposes.
There is not any risk to patient care as a result of this error.
Source: https://www.bbc.com/news/technology-44682369?ocid=socialflow_twitter
TPRM report: https://scoringcyber.rankiteo.com/company/nhs
"id": "nhs2119101122",
"linkid": "nhs",
"type": "Data Leak",
"date": "07/2018",
"severity": "25",
"impact": "1",
"explanation": "Attack without any consequences"
{'affected_entities': [{'customers_affected': '150,000 patients',
'industry': 'Healthcare',
'location': 'England',
'name': 'NHS',
'type': 'Healthcare Provider'}],
'attack_vector': 'Software Coding Error',
'data_breach': {'number_of_records_exposed': '150,000',
'personally_identifiable_information': 'Yes',
'sensitivity_of_data': 'High',
'type_of_data_compromised': 'Patient Data'},
'description': 'A coding error in the software used by GPs to record '
'objections to data being used for research and auditing '
'purposes resulted in a data breach affecting 150,000 patients '
'in England.',
'impact': {'data_compromised': 'Patient Data'},
'post_incident_analysis': {'root_causes': 'Coding Error'},
'title': 'NHS Data Breach Due to Coding Error',
'type': 'Data Breach',
'vulnerability_exploited': 'Coding Error'}