Stolen data in medical records leak cannot be recovered
A database stolen from MyDr contains information on nearly 19 mln people, including PESEL identification numbers and medical records. The breach involved more than 2 TB of data from a system used by about 12,000 healthcare facilities. While accounts, passwords and payment cards can be replaced or secured, leaked health information cannot be changed. Reserving a PESEL number, using two-factor authentication and enabling BIK credit alerts can reduce the risk of fraud but cannot eliminate it.
Criminals may combine medical details with other stolen information to create highly convincing phishing attacks, impersonating clinics, doctors, the National Health Fund or banks. Sensitive health data could also potentially be used for intimidation, blackmail or other forms of abuse.
(pb.pl)