RSS
Логотип
Баннер в шапке 1
Баннер в шапке 2

Health care system of Brazil (Sistema Único de Saúde)

Product
Developers: Ministry of Health of Brazil
Branches: Pharmaceutics, medicine, health care

2020: Date leak of 243 million Brazilians

On December 3, 2020 it became known that in Network personal data of 243 million Brazilians flowed away that approximately corresponds to all population of the country.

Abuses of regulations of storage of credentials for access to a DB of the Ministry of Health of Brazil became the reason of leak. As it appeared, credentials contained in the code of the page of the website of the Ministry of Health. As a result of failure in work of an information system of department personal data got to open access.

As reported the Brazilian edition O Estado de S. Paulo, in Network from a national health care system of Brazil (Sistema Único de Saúde (SUS) flowed away names, residence addresses, identification taxpayer numbers and phone numbers as the citizens registered in a system state medical insurance and clients of the private companies which issued the health insurance.

Leak gave access to official base of the Ministry of Health of Brazil with data on all residents of the country since 1989. After the publication the login and the password deleted from the source code.

These 243 million Brazilians, including the died citizens of the country, appeared in open access

Above-mentioned data were in open access within half a year. Among victims of leak – heads of executive, legislative and judicial authority of Brazil, ministers and other high-ranking officials.

Helped to find vulnerability to journalists the report of the Brazilian non-governmental organization of Open Knowledge Brasil issued in June, 2020. In it it was told about other state website which allowed similar leak. After that reporters began to look for similar problems on other state websites.

By the beginning of December, 2020 it is unknown whether someone used vulnerability of the website for downloading of base, but data from it can find buyers in the black market, and it is possible that as a result will offer base for sale.

At the end of November, 2020 in Network personal and medical data of 16 million Brazilians who caught COVID-19 flowed away. Oversight from the employee of one of medical institutions in São Paulo became the reason of leak. The president of Brazil Zhair Bolsonaru was also among victims of an incident.[1]

Notes