Over 300 Cybersecurity Incidents on US Healthcare.gov Website

Advertisement
By Associated Press | Updated: 25 March 2016 14:10 IST

The web portal used by millions of consumers to get health insurance under President Barack Obama's law has logged more than 300 cybersecurity incidents and remains vulnerable to hackers, nonpartisan congressional investigators said Wednesday.

The Government Accountability Office said none of the 316 security incidents appeared to have led to the release of sensitive data on HealthCare.gov, such as names, birth dates, addresses, Social Security numbers, financial information, or other personal information.

Most of the incidents over nearly 18 months seemed to have involved electronic probing by hackers. HealthCare.gov offers subsidized private health insurance for people who don't have access to workplace coverage.

Advertisement

Although GAO said the administration is making progress, its report concluded that security flaws "will likely continue to jeopardize the confidentiality, integrity and availability of HealthCare.gov."

Advertisement

Investigators identified weaknesses protecting sensitive information that flows through a key part of the system, called the data services hub. Operating behind the scenes, the hub pings federal agencies such as Social Security, IRS and Homeland Security to verify the personal details of consumers.

The report also found "significant weaknesses" in health insurance sites operated by states, which connect to the data hub. Currently, 12 states and Washington, D.C., run their own websites.

Advertisement

Federal computer systems - from the Defense Department to the White House - are frequent targets for hackers. The HealthCare.gov incidents took place between October 2013 and March 2015.

HealthCare.gov's data hub is one of the administration's major technology projects, and has generally been regarded as successful. Even as the consumer-facing part of the system crashed during the botched rollout of the health care law in 2013, the hub continued to operate smoothly.

Advertisement

However, GAO said it found shortcomings, including insufficiently tight restrictions on "administrator privileges" that allow a user broad access throughout the system, inconsistent use of security fixes, and an administrative network that was not properly secured.

Overall, 41 of the security incidents involved personal information that was either not properly secured or was exposed to someone who wasn't authorized to see it. Nearly all of those were classified as having a moderately serious impact.

In another type of incident, a list of government-employee account IDs, including passwords, was transmitted to staffers in an unencrypted email. That prompted a crash effort to create new passwords.

The report was released by Republican committee chairmen in the House and Senate on the sixth anniversary of the Affordable Care Act, even as the administration was talking up the achievements of the law, which has extended coverage to millions previously uninsured. Lawmakers asked the administration for more detail on security issues.

In a formal response to GAO, the Health and Human Services department said the security and privacy of consumer data is a top priority. The administration accepted the agency's recommendations for improvements.

Separately, GAO said it also submitted 27 cybersecurity recommendations in a report that isn't being made public due to its sensitive nature.

 

For details of the latest launches and news from Samsung, Xiaomi, Realme, OnePlus, Oppo and other companies at the Mobile World Congress in Barcelona, visit our MWC 2025 hub.

Advertisement

Related Stories

Popular Mobile Brands
  1. Realme Narzo Power 5G With 10,001mAh Battery Launched in India: Price, Specifications
  2. WhatsApp Plus Could Soon Let You Pay to Access These Features
  3. OnePlus 16, iQOO 16, Redmi K100 Pro Max Tipped to Launch at Higher Prices
  4. Nothing Phone 4a, Phone 4a Pro Launched in India at This Price
  5. OnePlus 15T Confirmed to Launch With a Larger Battery, Faster Charging
  6. Nothing Phone 4a Pro Teaser Hints at the Presence of This Phone 3 Feature
  7. Nubia Neo 5 GT Announced With 6,210mAh Battery: Check Price, Features
  8. Here's When the Xiaomi 17T Could Make Its Way to India
  9. Honor 600 Lite Launched With 6,520mAh Battery and This Dimensity Chipset
  10. Moto Watch Review: The Best Smartwatch Under Rs. 6,000 in 2026?
  1. ISS Crew Prepares to Send Japan’s HTV-X1 Cargo Spacecraft Back to Earth After Four Months
  2. OpenAI’s Codex App Is Now Available on Windows, Can Be Downloaded via Microsoft Store
  3. OpenAI Teases GPT-5.4 AI Model Launch Just a Day After Releasing GPT-5.3 Instant
  4. Nothing Headphone (a) Launched With Adaptive ANC, Customisable Controls: Price, Specifications
  5. Granny OTT Release Date: When and Where to Watch the Village Mystery Thriller Online?
  6. Andhaka OTT Release: Where to Watch the Telugu Drama-Thriller Online?
  7. Pookie OTT Release: When and Where to Watch Vijay Antony’s Romantic Drama Online?
  8. WhatsApp Plus Paid Subscription Reportedly in Development With Additional Customisation Options, Up to 20 Pinned Chats
  9. Samsung Patent Hints at Potential Clamshell-Style Foldable With Two Cover Displays
  10. Google Introduces Gemini 3.1 Flash-Lite as Its Fastest and Most Cost-Efficient AI Model
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.