Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
29
30
1
2
3
4
5
7
8
10
11
12
13
14
15
16
17
18
20
22
23
24
25
26
27
28
29
30
31
1
C.D. Howe Institute Roundtable Luncheon
2014-04-28    
12:00 pm - 1:30 pm
Navigating the Healthcare System: The Patient’s Perspective Please join us for this Roundtable Luncheon at the C.D. Howe Institute with Richard Alvarez, Chief Executive Officer, [...]
DoD / VA EHR and HIT Summit
DSI announces the 6th iteration of our DoD/VA iEHR & HIE Summit, now titled “DoD/VA EHR & HIT Summit”. This slight change in title is to help [...]
Electronic Medical Records: A Conversation
2014-05-09    
1:00 pm - 3:30 pm
WID, the Holtz Center for Science & Technology Studies and the UW–Madison Office of University Relations are offering a free public dialogue exploring electronic medical records (EMRs), a rapidly disseminating technology [...]
The National Conference on Managing Electronic Records (MER) - 2014
2014-05-19    
All Day
" OUTSTANDING QUALITY – Every year, for over 10 years, 98% of the MER’s attendees said they would recommend the MER! RENOWNED SPEAKERS – delivering timely, accurate information as well as an abundance of practical ideas. 27 SESSIONS AND 11 TOPIC-FOCUSED THEMES – addressing your organization’s needs. FULL RANGE OF TOPICS – with sessions focusing on “getting started”, “how to”, and “cutting-edge”, to “thought leadership”. INCISIVE CASE STUDIES – from those responsible for significant implementations and integrations, learn how they overcame problems and achieved success. GREAT NETWORKING – by interacting with peer professionals, renowned authorities, and leading solution providers, you can fast-track solving your organization’s problems. 22 PREMIER EXHIBITORS – in productive 1:1 private meetings, learn how the MER 2014 exhibitors are able to address your organization’s problems. "
Chicago 2014 National Conference for Medical Office Professionals
2014-05-21    
12:00 am
3 Full Days of Training Focused on Optimizing Medical Office Staff Productivity, Profitability and Compliance at the Sheraton Chicago Hotel & Towers Featuring Keynote Presentation [...]
Events on 2014-04-28
Events on 2014-05-06
DoD / VA EHR and HIT Summit
6 May 14
Alexandria
Events on 2014-05-09
Latest News

Babylon Health admits GP at Hand app data breach caused by ‘software issue’

Babylon Health admits GP at Hand app data breach caused by ‘software issue’

London-based digital firm Babylon Health has admitted that a data breach occurred that allowed a patient to access recordings of another patient’s consultation via the GP at Hand app. The app, which has more than 2.3 million UK users, allows members to book medical appointments, access a triage chatbot and have consultations with NHS doctors via smartphone video call.

A Babylon spokesperson says the error occurred through a new feature that allows people who booked an audio-only consultation to switch to video part way through a call.  The firm claims the breach only affected “a very small group of people” and it was aware of the issue an hour before being alerted by a user.

WHY IT MATTERS

Even a small data breach highlights exploitable vulnerabilities in a system, according to Dr Saif F Abed, founding partner and director of cybersecurity advisory services AbedGraham.

“What starts as an accident that’s quickly resolved could actually paint a target on a vendor, and especially a high profile one, for malicious and sustained attacks,” Abed said. To counteract this, Abed said that healthcare providers need to ensure they have security and clinical risk audits ingrained as a part of procurement and beyond with their suppliers and especially startups.

“Incidents like this are only going to increase as telehealth adoption continues its rise due to the COVID-19 pandemic. We have to remember that today we might be talking about a data breach, but tomorrow it could be a complete loss of service or even clinical data tampering because of an attack,” he added.

THE LARGER CONTEXT

The GP at Hand app is no stranger to controversy. The rollout of the app in Birmingham was delayed by NHS officials due to patient safety concerns. Babylon also came under fire for privacy issues earlier this year when it publicly analysed details of a prominent critic’s search data.

ON THE RECORD 

A Babylon spokesperson said: “On the afternoon of Tuesday 9th June we identified and resolved an issue within two hours whereby one patient accessed the introduction of another patient’s consultation recording. Our investigation showed that two other patients, who had booked and had appointments today, were incorrectly presented with, but did not view, recordings of other patients’ consultations through a subsection of the user’s profile within the Babylon app.

“This was the result of a software error rather than a malicious attack. The problem was identified and resolved quickly. Of course we take any security issue, however small, very seriously and have contacted the patients affected to update, apologise to and support where required. “We proactively notified the Information Commissioner’s Office and will share all the necessary information around this. “Affected users were in the UK only and this did not impact our international operations.”

Source: https://www.mobihealthnews.com/news/europe/babylon-health-admits-gp-hand-app-data-breach-caused-software-issue