The medical software company database may have exposed tens of thousands of health and PII records


  • A violation has impacted thousands of patients with Carolina anesthesiology
  • Confidential health information and patient data were exposed
  • This leaves anyone affected at risk of identity theft or social engineering

Security researcher Jeremiah Fowler has discovered a non -protected password database, which is believed to be owned by Carolina Anesthesiology PA, a health firm based in North Carolina. This data set contained 21,344 records, it was almost 7 GB and covered multiple states.

The information contained confidential data, including patient information, such as names, physical addresses, telephone numbers and email addresses, as well as insurance coverage details, anesthesia summaries, diagnoses, family medical history and medical notes. According to the researcher, there were files marked ‘Billing and compliance reports’, which gives an idea of ​​the type of data included.

Leave a Comment

Your email address will not be published. Required fields are marked *