Unprotected: Servers expose medical images, data of millions of Americans

Nearly 200 unprotected computer servers full of medical data have been identified throughout the United States. The discovery, part of a new report from ProPublica and Bayerischer Rundfunk, covers the data of more than 5 million Americans.

“It’s not even hacking,” Jackie Singh, an executive at Spyglass Security, said in the report. “It’s walking into an open door.”

ProPublica and Bayerischer Rundfunk found that some servers display the names of patients. Others, meanwhile, allowed “anyone on the internet” to see echocardiogram findings. Social Security numbers of some patients were even exposed.

Cooper Quintin, a researcher and senior staff technologist with the Electronic Frontier Foundation, called the discoveries “utterly irresponsible” in the report.

“Medical records are one of the most important areas for privacy because they’re so sensitive,” Quintin said.

ProPublica and Bayerischer Rundfunk noted that their work has already made an impact on the security of patients in the United States. MobilexUSA, a company that provides imaging services to nursing homes, prisons and other clients, was alerted by investigators that its server was displaying the names, birthdays and medical information of more than a million patients for anyone to see. MobilexUSA updated its security after the notification.

Recent Radiology Business coverage of cybersecurity issues in medical imaging can be read here.

Michael Walter
Michael Walter, Managing Editor

Michael has more than 18 years of experience as a professional writer and editor. He has written at length about cardiology, radiology, artificial intelligence and other key healthcare topics.

Around the web

The nuclear imaging isotope shortage of molybdenum-99 may be over now that the sidelined reactor is restarting. ASNC's president says PET and new SPECT technologies helped cardiac imaging labs better weather the storm.

CMS has more than doubled the CCTA payment rate from $175 to $357.13. The move, expected to have a significant impact on the utilization of cardiac CT, received immediate praise from imaging specialists.

The all-in-one Omni Legend PET/CT scanner is now being manufactured in a new production facility in Waukesha, Wisconsin.