14 April, 2021

Pretty Sure This Is A Major HIPAA Violation

NY's vaccine pass is plagued with privacy failures as anyone can access someone else's health records (reclaimthenet.org)

And Excelsior Pass has poor security in place, allowing anyone to check a person’s eligibility and access their Covid-related health records through the app simply by entering their name, date of birth and ZIP code.

After this, more “relatively easily obtained information” is required to verify identity, The Dossier writes. “Even if you get some questions wrong, it appears that you can go back in and answer an unlimited amount of times until you get the right combination,” said the report.

And after reading the article, I’m not even sure that’s the worst bit.

No comments:

Post a Comment