Molina Healthcare investigating breach of patient portal
Managed care and Affordable Care Act exchange insurer Molina Healthcare has shut down its online patient portal after a potential data breach may have exposed protected health information for millions of customers.
According to California Healthline, the company may have been “exposing countless patient medical claims” without needing any authentication, according to cybersecurity expert Brian Krebs. He said a Molina member alerted him that by changing a single number in the website address, it was possible to view others patients’ claims, names and addresses.
“It’s unconscionable that such a basic, Security 101 flaw could still exist at a major healthcare provider,” Krebs said. “This information is more sensitive than credit card data, but it seems less protected.”
The company said it was already aware of the vulnerability and is now conducting an internal investigation to determine if and how much data was exposed.
Read the full article at the link below: