Tehuty News
  • Login
  • Home
  • News
  • Sport
  • Reel
  • World

    Death of Venezuelan opposition figure in custody ‘vile’, US says

    Fire at popular India nightclub kills 23, Goa officials say

    Legendary US architect dies aged 96

    Police arrest suspect in DC pipe bomb incident, ending years-long manhunt

    Drunk raccoon found passed out on liquor store floor after breaking in

    Flood catastrophe awakens volunteerism in Sri Lanka

    Trump releases fraudster executive days into prison sentence

    Ukraine talks ‘productive’ but more work needed, Rubio says

    More than 70,000 killed in Gaza since Israel offensive began, Hamas-run health ministry says

  • Worklife
  • Travel
  • Future
  • More
    • Culture
    • Music
10 °c
London
15 ° Thu
16 ° Fri
8 ° Sat
7 ° Sun
No Result
View All Result

Welcome to Tehuty News

Monday, December 8, 2025
Tehuty News
  • Home
  • News
  • Sport
  • Reel
  • World

    Death of Venezuelan opposition figure in custody ‘vile’, US says

    Fire at popular India nightclub kills 23, Goa officials say

    Legendary US architect dies aged 96

    Police arrest suspect in DC pipe bomb incident, ending years-long manhunt

    Drunk raccoon found passed out on liquor store floor after breaking in

    Flood catastrophe awakens volunteerism in Sri Lanka

    Trump releases fraudster executive days into prison sentence

    Ukraine talks ‘productive’ but more work needed, Rubio says

    More than 70,000 killed in Gaza since Israel offensive began, Hamas-run health ministry says

  • Worklife
  • Travel
  • Future
  • More
    • Culture
    • Music
No Result
View All Result
Tehuty News
No Result
View All Result
Home Technology

Software bug at firm left NHS data ‘vulnerable to hackers’

March 10, 2025
in Technology
6 min read
316 6
0
351
SHARES
1.4k
VIEWS
Share on FacebookShare on Twitter


Ben Morris

Editor, Technology of Business

Getty Images A nurse fills in a form in front of screensGetty Images

Medefer handles around 1,500 referrals a month

The NHS is “looking into” allegations that patient data was left vulnerable to hacking due to a software flaw at a private medical services company.

The flaw was found last November at Medefer, which handles 1,500 NHS patient referrals a month in England.

The software engineer who discovered the flaw believes the problem had existed for at least six years.

Medefer says there is no evidence the flaw had been in place that long and stressed that patient data has not been compromised.

The flaw was fixed a few days after being discovered.

In late February the company commissioned an external security agency to undertake a review of its data management systems.

An NHS spokesperson said: “We are looking into the concerns raised about Medefer and will take further action if appropriate.”

Medefer’s system allows patients to book virtual appointments with doctors, and gives those clinicians access to the appropriate patient data.

However, the software bug, discovered in November, made Medefer’s internal patient record system vulnerable to hackers, the engineer said.

The software engineer, who does not want to be named, was shocked by what he uncovered.

“When I found it, I just thought ‘no, it can’t be’.”

The problem was in bits of software called APIs (application programming interfaces), which allow different computer systems to talk to each other.

The engineer says that at Medefer those APIs were not properly secured, and could potentially have been accessed by outsiders, who would have been able to see patient information.

He said it was unlikely that patient information was taken from Medefer, but that without a full investigation, the company could not have known for sure.

“I’ve worked in organisations where, if something like this happened, the whole system would be taken down immediately,” he said.

On discovering the flaw the engineer told the company that an external cybersecurity expert should be brought in to investigate the problem, which he says the company did not do.

Medefer says the external security agency has confirmed that it has found no evidence of any breach of data and that all the company’s data systems were currently secure.

It says the process of investigating and fixing the API flaw was “extremely open”.

Medefer said it had reported the issue to the ICO (Information Commissioner’s Office) and the CQC (Care Quality Commission), “in the interests of transparency”, and that the ICO had confirmed there is no further action to be taken as there is no evidence of a breach.

The engineer, who had been contracted in October to test for flaws in the company’s software, left the company in January.

In a statement Dr Bahman Nedjat-Shokouhi, founder and CEO of Medefer, said: “There is no evidence of any patient data breach from our systems.”

He confirmed that the flaw had been discovered in November and a fix was developed in 48 hours.

“The external security agency has asserted that the allegation that this flaw could have provided access to large amounts of patients’ data is categorically false.”

The security agency will complete its review later this week.

Dr Nedjat-Shokouhi added: “We take our duties to patients and the NHS very seriously. We hold regular external security audits of our systems by independent external security agencies, undertaken on multiple occasions every year.”

Getty Images A vial of blood in front of a some medical scansGetty Images

Huge amounts of medical data has to be shared among doctors and hospitals

Cybersecurity experts, who have looked at information supplied by the software engineer, have expressed their concern.

“There is the possibility that Medefer stored data derived from the NHS not as securely as one would hope it would be,” said Prof Alan Woodward, a cybersecurity expert at the University of Surrey.

“The database might be encrypted and all the other precautions taken, but if there is a way of glitching the API authorisation, anyone who knows how could potentially gain access,” he added.

Another expert pointed out that as Medefer deals with highly-sensitive, medical data, the company should have brought in cybersecurity experts as soon as the problem was identified.

“Even if the company suspected that no data was stolen, when facing an issue that could have resulted in a data breach, especially with data of the nature in question, an investigation and confirmation from a suitably qualified cybersecurity expert would be advisable,” says Scott Helme, a security researcher.

Medefer was founded in 2013 by Dr Nedjat-Shokouhi, with a goal to improve outpatient care. Since then its technology has been used by NHS trusts across England.

In a statement the NHS spokesperson said those trusts are responsible for their contracts with the private sector.

“Individual NHS organisations must ensure they meet their legal responsibilities and national data security standards to protect patient data when appointing suppliers, and we offer them support and training nationally on how this should be done.”



Source link

Related posts

Production halted at Chinese factory making ‘childlike’ sex dolls

December 8, 2025

Elon Musk’s X fined €120m over ‘deceptive’ blue ticks

December 7, 2025
Previous Post

Manchester City: Gareth Taylor sacked by Women’s Super League side

Next Post

Reaction To How Sweden Survives Without Small Talks- BBC REEL

Next Post

Reaction To How Sweden Survives Without Small Talks- BBC REEL

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

RECOMMENDED NEWS

Barclays boss Jes Staley in shock exit angry at Epstein probe

4 years ago

Release date, price and new games announced

8 months ago

Coronavirus: The advice you would give your pre-lockdown self

6 years ago

Dan Ashworth in discussions over potential FA return

9 months ago

FOLLOW US

  • 138 Followers
  • 79.6k Followers
  • 207k Subscribers

BROWSE BY CATEGORIES

  • Business
  • Have your say
  • In Pictures
  • Politics
  • Reel
  • Sports
  • Technology
  • Top News
  • World

BROWSE BY TOPICS

America animation B.B.C. bbc BBC iPlayer B B Ci Player bbcnews BBC NEWS BBC Reel bbcreel breaking news British TV british tv shows documentaire documental documentaries documentary documentary film facts factual features free documentary full documentary funny History india India news iPlayer music NEWS physics reel science Streaming top documentaries TV United Kingdom usa us news Video watch british tv online watch british tv shows online watch uk tv online World world news

Top Stories

  • TikTok: Trump says Oracle deal for video app ‘has my blessing’

    356 shares
    Share 142 Tweet 89
  • ai tech reel #history #duet #marvel #memes #bbc #comedy #automobile

    351 shares
    Share 140 Tweet 88
  • Scammers hacked her phone and stole thousands of pounds

    351 shares
    Share 140 Tweet 88
  • Troy Deeney’s Team of the Week: Areola, Munoz, Kadioglu, Anderson, Eze, Wilson

    351 shares
    Share 140 Tweet 88
  • Manu Tuilagi: Samoa option for 2027 Rugby World Cup open

    351 shares
    Share 140 Tweet 88

Features

Business

Covid fraud and error cost taxpayers £10.9bn, report will say

by admin
December 8, 2025
0

Josh MartinBusiness reporterGetty ImagesThe report will look at Covid-era programmes like Eat Out to Help Out, which subsidised hospitality...

Read more

FBI Director Kash Patel and Democrat Senator Cory Booker clash during hearing. #USNews #BBCNews

December 8, 2025

Production halted at Chinese factory making ‘childlike’ sex dolls

December 8, 2025

UK Championship 2025: Mark Selby holds off Judd Trump to win third title

December 8, 2025

Death of Venezuelan opposition figure in custody ‘vile’, US says

December 8, 2025

Recent News

  • Covid fraud and error cost taxpayers £10.9bn, report will say
  • FBI Director Kash Patel and Democrat Senator Cory Booker clash during hearing. #USNews #BBCNews
  • Production halted at Chinese factory making ‘childlike’ sex dolls
Tehuty News

Breaking news, sport, TV, radio and a whole lot more.
Tehuty News, educates and entertains - wherever you are, whatever your age.

Follow us on social media:

Category

  • Business
  • Have your say
  • In Pictures
  • Politics
  • Reel
  • Sports
  • Technology
  • Top News
  • World
  •    If you re feeling guilty  there s probably a reason   Watch Love Life on iPlayer   LoveLife  bbciplayer  iplayer
  • When a series of disturbing incidents plagues an insular fishing community  a young man must wrestle with something entirely unexpected      Watch The Terror  Infamy on iPlayer from tonight at 9pm    TheTerrorInfamy  theterror  bbciplayer  iplayer  drama  horror  supernatural
  •  thebodycoach explores how his parents    mental health struggles shaped him in a new documentary  executive produced by  officiallouistheroux  Watch Joe Wicks  Facing My Childhood on iPlayer from 16 May  If you  or someone you know  has been affected by any of the issues in Joe Wicks  Facing My Childhood  the following organisations may be able to help  https   bbc in 3LPZ5xI   JoeWicksFacingMyChildhood  bbciplayer  iplayer  MentalHealth  JoeWicks  TheBodyCoach
  • Ten Dancers  One Iconic Stage     Who will be crowned BBC Young Dancer 2022   BBC Young Dancer  The Final  Saturday 7 May at 7pm  bbctwo  Series catch up on  bbciplayer   bbc  bbcarts  arts  dance  dancing  dancer  dancers  youngdancer  youngdancer2022  bbcyoungdancer2022
  • Election 2022  What does it all mean  Laura Kuenssberg and Chris Mason discuss  Newcast   Listen on BBC Sounds
  • Five home bakers compete in a national competition to create a pudding fit for the Queen  hoping to be crowned winner of the jubilee pudding           Watch The Jubilee Pudding  70 Years in the Baking on iPlayer from 12 May   bbc  bbciplayer  jubilee  platinumjubilee  royalfamily  thequeen  jubileepudding
  • The one and only Polly Gray  forever in our hearts and minds          Watch Peaky Blinders on iPlayer   PeakyBlinders  PollyGray  iPlayer  BBCiPlayer    Drama
  • Accurate depiction of dating in your thirties     Watch Gentleman Jack on iPlayer   GentlemanJack  bbciplayer  iplayer  dating
  • What s a jazz album you think people should check out         gregoryportermusic   palomafaith and  yolandabrown have each recommended a great jazz record for you to try

Recent News

Covid fraud and error cost taxpayers £10.9bn, report will say

December 8, 2025

FBI Director Kash Patel and Democrat Senator Cory Booker clash during hearing. #USNews #BBCNews

December 8, 2025
  • Home
  • News
  • Sport
  • Reel
  • World
  • Worklife
  • Travel
  • Future
  • More

© 2020 Tehuty News

  • Home
  • News
  • Sport
  • Reel
  • Travel
  • WorkLife
  • Future
  • World
  • Technology
  • Login

© 2020 Tehuty News

Welcome Back!

Login to your account below

Forgotten Password?

Create New Account!

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In