El leak de MiniMed de febrero era venta de información, ahora los 400,000 registros de pacientes lo están dando de gratis en foros.
Esto amerita una demanda colectiva brutal, daño de imagen, psicológico, etc… ¿La ANTAI? Biengraciasyusted porque ellos también fueron penetrados.
‼️🇵🇦 MiniMed Panama, the largest private primary healthcare network in Panama, has allegedly been breached, with approximately 400,000 records leaked spanning patients, doctors, and medical imaging data.
⠀
‣ Threat Actor: ohmydays (Waxx Org.)
‣ Category: Data Leak
‣ Victim: MiniMed Panama (Clínica Laboratorio)
‣ Industry: Healthcare
⠀
The actor claims access was obtained due to default credentials left on the client's systems by their vendor LATAM MAXIA. Two compromised systems were identified with weak credentials. MiniMed operates over 14 clinics and a hospital in Panama City.
⠀
What's in it:
⠀
▪️ ~400,000 total records
▪️ usersdata (74,233): user PII, plaintext passwords, names, usernames, emails, phones, job titles, access levels
▪️ patients (156,869): patient PII, national IDs, names, gender, emails, phones, addresses, DOB, marital status, nationality
▪️ patientsexams (99,304): medical imaging records, patient names, DOB/age, gender, study descriptions, modalities, dates, referring doctors, report/image status
▪️ doctorsinfo (521): doctor PII, plaintext passwords, national IDs, names, emails, phones, specialty, doctor type, status
▪️ appointments (23,511): patient/doctor/radiologist/tech IDs, dates, study types, modalities, payment methods, organizations
▪️ appointmentsnames (23,507): appointment summaries, patient IDs/names, dates/times, study names, modalities, status