'Uber for nurses' exposes 86K+ medical records, PII in open S3 bucket for months
ID: a6325ed4-b117-511b-a411-bcda699a028d
STIX ID: report--a6325ed4-b117-511b-a411-bcda699a028d
Feed Name: The Register (Security)
A cybersecurity researcher discovered an unsecured, non-password-protected AWS S3 bucket owned or used by ESHYFT exposing 108.8 GB and 86,341 records of highly sensitive healthcare-worker data (profile photos, scanned IDs, SSNs, medical records, timecards, certifications and more). The bucket remained publicly accessible for over a month after notification, raising risks of identity theft, fraud, targeted attacks on healthcare facilities, regulatory exposure, and potential extortion.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
