Molina Healthcare investigating breach of patient portal

Managed care and Affordable Care Act exchange insurer Molina Healthcare has shut down its online patient portal after a potential data breach may have exposed protected health information for millions of customers.

According to California Healthline, the company may have been “exposing countless patient medical claims” without needing any authentication, according to cybersecurity expert Brian Krebs. He said a Molina member alerted him that by changing a single number in the website address, it was possible to view others patients’ claims, names and addresses.

“It’s unconscionable that such a basic, Security 101 flaw could still exist at a major healthcare provider,” Krebs said. “This information is more sensitive than credit card data, but it seems less protected.”

The company said it was already aware of the vulnerability and is now conducting an internal investigation to determine if and how much data was exposed.

Read the full article at the link below: 

""
John Gregory, Senior Writer

John joined TriMed in 2016, focusing on healthcare policy and regulation. After graduating from Columbia College Chicago, he worked at FM News Chicago and Rivet News Radio, and worked on the state government and politics beat for the Illinois Radio Network. Outside of work, you may find him adding to his never-ending graphic novel collection.

Around the web

Compensation for heart specialists continues to climb. What does this say about cardiology as a whole? Could private equity's rising influence bring about change? We spoke to MedAxiom CEO Jerry Blackwell, MD, MBA, a veteran cardiologist himself, to learn more.

The American College of Cardiology has shared its perspective on new CMS payment policies, highlighting revenue concerns while providing key details for cardiologists and other cardiology professionals. 

As debate simmers over how best to regulate AI, experts continue to offer guidance on where to start, how to proceed and what to emphasize. A new resource models its recommendations on what its authors call the “SETO Loop.”