Breaking
March 10, 2025

Software bug meant NHS information was potentially “vulnerable to hackers” | usagoldmines.com


  • The NHS is reportedly looking into allegations of a third-party software flaw
  • A vulnerability of this kind could leave patients exposed
  • However Medefer denies wrongdoing, says it was unaware of issue

The NHS is reportedly “looking into” allegations that a software flaw in a virtual booking provider left patient data exposed for a number of years.

Reports from ComputerWeekly say a researcher found a flaw in Medefer, which handles 1,500 NHS patient referrals per month, with its system allowing patients to book virtual appointments with doctors, as well as giveingphysicians access to the relevant patient data.

However, the APIs in Medefer’s software were apparently not secured properly, meaning sensitive patient data could have fallen into the wrong hands, the researcher confirmed.

Patients vulnerable

The researcher, who wished to be anonymous, told Computer Weekly hackers could target these reported vulnerabilities by using “a suite of automated tools and techniques” in order to retrieve personal and sensitive information that could be monetised or used for further malicious activity. Since authentication wasn’t required, threat actors could “script automated calls to the APIs to exfiltrate large amounts of data, for example all patient records.”

The flaw could have existed for at least 6 years, the researcher said, meaning a large amount of NHS data could be at risk.

However Medefer says that it first heard about the NHS investigation in the media, and that it has had no prior contact from the NHS on this issue.

“There is no evidence of any patient data breach from our systems at any point. This has been formally confirmed by an independent specialist cybersecurity agency” Dr Bahman Nedjat-Shokouhi, CEO of Medefer told TechRadar Pro.

“The external cybersecurity agency has asserted that the allegation that this flaw could have provided access to large amounts of patients’ data is categorically false, confirmed that all of Medefer’s data systems are currently secure, and that it is not possible to access any patient data without appropriate security authentication. The issue has been reported to the Information Commissioner’s Office (ICO) by Medefer, and the commission confirmed no further action needs to be taken.”

Healthcare data is incredibly valuable for threat actors, as medical information can be sold on the dark web, and personally identifiable information (like names, addresses, emails) can be used in social engineering attacks or identity theft, so anyone potentially exposed should monitor their accounts carefully.

You might also like

​ 

This articles is written by : Nermeen Nabil Khear Abdelmalak

All rights reserved to : USAGOLDMIES . www.usagoldmines.com

You can Enjoy surfing our website categories and read more content in many fields you may like .

Why USAGoldMines ?

USAGoldMines is a comprehensive website offering the latest in financial, crypto, and technical news. With specialized sections for each category, it provides readers with up-to-date market insights, investment trends, and technological advancements, making it a valuable resource for investors and enthusiasts in the fast-paced financial world.

Recent:

Upcoming Chromebook feature will protect your battery’s lifespan | usagoldmines.com

How to Track Your Sleep With an Apple Watch Beth Skwarecki | usagoldmines.com

Apple Sports App Updated With Support for F1 Racing and More Joe Rossignol | usagoldmines.com

Apple Seeds Third iOS 18.4 and iPadOS 18.4 Betas With Priority Notifications, Ambient Music and More...

Apple Seeds Third Beta of macOS Sequoia 15.4 With Mail Categorization Juli Clover | usagoldmines.com

Apple Seeds Third Betas of visionOS 2.4, tvOS 18.4, and watchOS 11.4 Juli Clover | usagoldmines.com

Yes, you get used to the grille: The 2025 BMW 430i Gran Coupe review Jonathan M. Gitlin | usagoldmin...

HBO drops The Last of Us S2 trailer Jennifer Ouellette | usagoldmines.com

Firmware update bricks HP printers, makes them unable to use HP cartridges Scharon Harding | usagold...

Some older Chromecasts are suddenly ‘untrusted,’ can’t cast anymore | usagoldmines.com

Tessan Remote Wall Outlet review: No Wi-Fi, no problem? | usagoldmines.com

Gemini in Gmail Gets ‘Add to Calendar’ Button for Workspace Tim | usagoldmines.com

X Is Down Jake Peterson | usagoldmines.com

My Favorite Budget-Friendly QLED TV Is $320 Off Right Now Daniel Oropeza | usagoldmines.com

Why You Shouldn’t ‘Fix’ Your Older Chromecast With a Factory Reset, According to Google David Nield ...

7 New Things Your iPhone Can Do in iOS 18.4 Tim Hardwick | usagoldmines.com

iPad 10 vs. iPad 11 Buyer's Guide: 10+ Differences Compared Hartley Charlton | usagoldmines.com

Amazon Takes Up to $70 Off M3 iPad Air, Plus First Discount on 13-Inch iPad Air Magic Keyboard Mitch...

AdGuard becomes the latest VPN to add post-quantum encryption chiara.castro@futurenet.com (Chiara Ca...

Manus AI may be the new DeepSeek, but initial users report problems luke.hughes@futurenet.com (Luke ...

These mysterious wireless earbuds claim to monitor your heart and hearing health simultaneously, but...

Microsoft is adding image editing and compression to its Windows Share feature - and I couldn't be h...

What’s behind the recent string of failures and delays at SpaceX? Eric Berger | usagoldmines.com

Developer convicted for “kill switch” code activated upon his termination Ashley Belanger | usagoldm...

Buying a PC game controller is all about options. Cut through the BS with this guide | usagoldmines...

Revealed: The new laptop battery level icons coming to Windows 11 | usagoldmines.com

PNY CS2150 SSD review: This is the PCIe 5.0 value buy to beat | usagoldmines.com

Why you should never, ever delete spam email | usagoldmines.com

Beware! Fake parking ticket SMS scams are on the rise | usagoldmines.com

This Ryzen 7 mini PC supports three 4K displays for just $299 | usagoldmines.com

Filmora 14 adds quality audio from Universal Music for Creators | usagoldmines.com

Acer’s 1440p OLED gaming monitor is 55% off — today only! | usagoldmines.com

Best gaming monitors 2025: Level up your display | usagoldmines.com

Grab Lenovo’s RTX 4060 laptop for just $750 while you still can | usagoldmines.com

Lenovo put an AI chip in a monitor, for some reason | usagoldmines.com

Google Calendar gets dedicated side panel for Gemini AI assistant | usagoldmines.com

OnePlus Replacing Beloved Alert Slider With Customizable Button Tim | usagoldmines.com

My Favorite Amazon Deal of the Day: The Apple Watch Series 10 Daniel Oropeza | usagoldmines.com

Experts warn this critical PHP vulnerability could be set to become a global problem | usagoldmines...

X is down again – here's everything we know about Twitter's third outage of the day mark.wilson@futu...

Beware! Fake parking ticket SMS scams are on the rise | usagoldmines.com

Cybersecurity workers aren't massively happy with their employers - but they are being paid pretty w...

'We could not achieve that with puppetry or animatronics': Joe and Anthony Russo didn't want to buil...

Top Bluetooth chip security flaw could put a billion devices at risk worldwide | usagoldmines.com

RTX 5050 rumors detail full spec of desktop graphics card, suggesting Nvidia may use slower video RA...

OnePlus is ditching the Alert Slider for an iPhone-style customizable button - and I’ll be sad to se...

Another top security camera maker is seeing devices hijacked into botnet | usagoldmines.com

Quordle hints and answers for Tuesday, March 11 (game #1142) | usagoldmines.com

NYT Strands hints and answers for Tuesday, March 11 (game #373) | usagoldmines.com

NYT Connections hints and answers for Tuesday, March 11 (game #639) | usagoldmines.com

Being ready when the cyber crisis happens | usagoldmines.com

The true threat of business downtime | usagoldmines.com

DOJ: Google must sell Chrome, Android could be next Ryan Whitwam | usagoldmines.com

Google Pixel 4a’s painful “update” was due to battery overheating risk Kevin Purdy | usagoldmines.co...

‘Expect pain at the cash register.’ PC insiders weigh in on tariffs | usagoldmines.com

How to use Windows 11 Pro to create an encrypted virtual drive | usagoldmines.com

Apple Watch Series 10 now on sale for lowest-ever price: $299 | usagoldmines.com

This Harman Kardon Bluetooth Speaker Is at Its Lowest Price Pradershika Sharma | usagoldmines.com

Apple Still Exploring Smart Glasses Similar to Meta's Ray-Bans Tim Hardwick | usagoldmines.com

Apple One's Best Plan Now Includes Two More Perks For Free Joe Rossignol | usagoldmines.com

iOS 18.3.2 Update Coming Soon for iPhones Joe Rossignol | usagoldmines.com

4 free temporary email services that stop spam dead | usagoldmines.com

My Favorite Unexpected Cleaning Tools for the Kitchen and Bathroom Lindsey Ellefson | usagoldmines.c...

The Out-of-Touch Adults' Guide to Kid Culture: International Women's Month Stephen Johnson | usagold...

Review Roundup: iPad Air With M3 Chip and New Magic Keyboard Joe Rossignol | usagoldmines.com

Worried about DeepSeek? Well, Google Gemini collects even more of your personal data chiara.castro@f...

Garmin owners were confused about 13.35 software update for Fenix 8, here's what actually happened s...

Nvidia's GeForce graphics driver woes continue for some users, despite 572.75 hotfix's overclock and...

Video Shows iPhone 17 Mockups Based on 'Internal Documents' Tim Hardwick | usagoldmines.com

Apple Pulls iPhone 16 Ad Showing Off 'More Personal Siri' Tim Hardwick | usagoldmines.com

Advantage, Alexa – Apple's smart home hub reportedly 'postponed' due to Siri slowdown alexblake.tech...

Major Oracle outage hits US Federal health record systems | usagoldmines.com

The new Ray-Ban Meta smart glasses design is an expensive disappointment hamish.hector@futurenet.com...

Q Acoustics wants to bring the bass to your post-Oscars movie catch-up | usagoldmines.com

The US government still wants Google to sell off Chrome | usagoldmines.com

The OLED iPad Pro is reportedly less popular than expected –and that could mean these changes to App...

Samsung’s new budget handsets are getting One UI 7 before the Galaxy S24 Ultra, and I’m as confused ...

Best TV antennas of 2025: Reviews and buying advice | usagoldmines.com

Best gaming laptops under $1,000: Expert picks that won’t break the bank | usagoldmines.com

Fastest VPN 2025: We identify the speediest performers | usagoldmines.com

Lenovo Yoga Slim 9i 14 review: Sleek and shiny, but with trade-offs | usagoldmines.com

Assassin's Creed Shadows PS5 Pro details have been revealed and the biggest difference appears to be...

Agentic AI has “profound” issues with security and privacy, Signal President says | usagoldmines.co...

Windows 11 users get ready for more ‘recommendations’ from Microsoft – but I’m relieved to say these...

UNA Watch is the sustainable wearable that wants to replace your Apple Watch stephen.warwick@futuren...

NTT admits hackers accessed details of almost 18,000 corporate customers in cyberattack | usagoldmi...

Hey AI DJ, put a record on: Spotify seems set to let you speak to its AI DJ | usagoldmines.com

Chromecast users are getting increasingly angry about a weird 'untrusted device' bug that blocks cas...

The next Xbox could simply be a PC in a 'TV-friendly shell' per latest rumor dash.wood@futurenet.com...

Death Stranding 2: On the Beach trailer confirms June release date and an even more harrowing post-a...

Better than the real thing? Spark 2 packs 39 amp sims into $300 Bluetooth speaker Nate Anderson | us...

Apple's Foldable iPad Pro Prototype Features Under-Display Face ID Tim Hardwick | usagoldmines.com

DeepSeek kicks off the next wave of the AI rush | usagoldmines.com

'We take the comprehensive view': Joe and Anthony Russo drop big hint over Marvel heroes from Disney...

Upgrading to a new PC? You’ll want to wipe your old laptop with this shredder | usagoldmines.com

CFOs: Are you ready to let go and trust AI? | usagoldmines.com

Ben Stiller and Eddy Cue Discuss Apple TV+ Series 'Severance' at SXSW Joe Rossignol | usagoldmines.c...

Best PC computer deals: Top picks from desktops to all-in-ones | usagoldmines.com

Study: Megalodon’s body shape was closer to a lemon shark Jennifer Ouellette | usagoldmines.com

Is the moon too far for your data? IBM's Red Hat is teaming up with Axiom Space to send a data cente...

Leave a Reply