More than 1 billion CVS health records exposed in the online database

More than 1 billion CVS health records exposed in the online database

According to CVS Health, the metadata did not contain any personally identifiable information, and there was no risk to patients, customers or members. WHY IT MATTERS   However, the researchers noted that the records contained email addresses – which could conceivably identify a person’s first or last name. They pointed out, for example, that a Google search for some of the exposed email addresses enabled them to identify the email’s operator.  

“We immediately investigated and determined that the database, which was hosted by a third-party vendor, did not contain any personally identifiable information of our customers, members or patients,” according to the statement. “In March of this year, a security researcher notified us of a publicly accessible database that contained non-identifiable CVS Health metadata,” said CVS Health in a statement sent to Healthcare IT News.   

“We’ve addressed the issue with the vendor to prevent a recurrence and we thank the researcher who notified us about this matter.”   Public access to the data was restricted the same day that CVS Health was notified.  

Fowler says CVS Health told him that the emails were not from customer account records. Rather, they were entered into the search bar, which captures and logs everything that is entered into the website’s search function, by visitors themselves – likely in a mistaken attempt to log in to their account using the wrong field.   “This could explain how so many email addresses ended up in a database of product searches that was not intended to identify the visitor,” said Fowler.   CVS Health did not respond to follow-up questions about this potential connection.  

“Hypothetically, it could have been possible to match the Session ID with what they searched for or added to the shopping cart during that session and then try to identify the customer using the exposed emails,” wrote Fowler in his blog post. The records also contained a “visitor ID” and “session ID.”  

The News Highlights

  • More than 1 billion CVS health records exposed in the online database
  • Check the latest Health news updates and information about health.
Disclaimer: If you need to edit or update this news from compsmag then kindly contact us Learn more

For Latest News Follow us on Google News


Latest Headlines
  • Show all
  • Trending News
  • Popular By week
Revolut Launches US-Mexico Remittance Corridor, Enabling Expatriates to Easily Send Money Back Home
Revolut Launches US-Mexico Remittance Corridor, Enabling Expatriates to Easily Send Money Back Home
“At Revolut, we believe sending peer-to-peer payments cross-border should be simple. In the context of today’s environment, people need to lean on each other ...
Human health insurer exceeds profit estimates under Medicare Advantage strength
Doctor: The moving Covid cases I’m seeing
We had it bad last spring. I am simply not ready to go back to how things were. Vaccine mandates and mask requirements make sense to me. Masks help protect ...
Kaleida Health updates visitor guidelines for non-COVID patients
Latest news on mask cases and warrants
A second new case was reported in Beijing on Thursday afternoon, with health authorities describing the two local cases as a husband and wife who had recently ...
Greenroom, Spotify’s Clubhouse competitor, has surpassed 140K iOS downloads and 100K Android instals – TechCrunch
Greenroom, Spotify’s Clubhouse competitor, has surpassed 140K iOS downloads and 100K Android instals – TechCrunch
For Android, Google Play data Indicates The app has been installed over 100,000 times, but the sensor tower still can’t see this number. A rival to ...
The introduction of a phone line for persons searching for Covid-19 testing in the Capital Region has been announced by krcgtv.com
The introduction of a phone line for persons searching for Covid-19 testing in the Capital Region has been announced by krcgtv.com
People who want a test and don’t have a primary care physician can call (833) 763-0444 between 9 am and 1 pm, Monday through Friday. Testing will be provided ...
BRIEF-Apple Plans To Restore Mask Requirement For Both Customers And Employees At Most U.S. Retail Stores
BRIEF-Apple Plans To Restore Mask Requirement For Both Customers And Employees At Most U.S. Retail Stores
(This story has not been edited by Devdiscourse staff and is auto-generated from a syndicated feed.) APPLE PLANS TO RESTORE MASK REQUIREMENT AT MOST OF ITS ...
Researchers seek to end racial prejudice in maternal health |  FIU News
Researchers seek to end racial prejudice in maternal health | FIU News
“The project is interdisciplinary in its approach. We want a network of people who understand better the solutions to the problem,” Cornelius said. Over the ...
Land purchased for Mississippi casino site donated to non-profit organizations
Land purchased for Mississippi casino site donated to non-profit organizations
It’s unclear what the organization will do with the land. A representative of the Boys and Girls Club didn’t return calls for comment, The Sun Herald ...
With Jetpack Compose 1.0, Google’s goal for Android development is now fulfilled
With Jetpack Compose 1.0, Google’s goal for Android development is now fulfilled
Google released a beta of 1.0 back in March, giving it a few months for final bugs to be identified and fixed. This includes some of the recently added ...
LG Chem’s Second Quarter Profit Clearly Outperforms Case Budget Estimates
LG Chem’s Second Quarter Profit Clearly Outperforms Case Budget Estimates
($1 = 1,146.7800 won) In April, SK Innovation said it would pay LG Chem nearly $2 billion to drop all litigation in a bitter trade secrets dispute that had ...
Show next
Compsmag - Latest News from tech, business and health
Logo