This page has been archived and commenting is disabled.

Security Expert Hacks Obamacare Website In 4 Minutes; Accesses 70,000 Records

Tyler Durden's picture




 

Submitted by Michael Krieger of Liberty Blitzkrieg blog,

The hits just keep on coming for ObamaCare. It was less than two weeks ago that I highlighted the potential premium rate death spiral that ObamaCare faces due to the fact that only old and sick people are signing up for the program. Now it seems there are further security related concerns plaguing the site, as cyber-security expert David Kennedy recently claimed that “gaining access to 70,000 personal records of Obamacare enrollees via HealthCare.gov took about 4 minutes.”

It’s actually hard to be this incompetent if you tried. More from the Washington Times:

The man who appeared before Congress last week to explain the security pitfalls of HealthCare.gov took to Fox News on Sunday to explain just how easy it was to penetrate the website.

 

Hacking expert David Kennedy told Fox’s Chris Wallace that gaining access to 70,000 personal records of Obamacare enrollees via HealthCare.gov took about 4 minutes and required nothing more than a standard browser, the Daily Caller reported.

 

“And 70,000 was just one of the numbers that I was able to go up to and I stopped after that,” he said. “You know, I’m sure it’s hundreds of thousands, if not more, and it was done within about a 4 minute timeframe. So, it’s just wide open.”

 

“You can literally just open up your browser, go to this, and extract all this information without actually having to hack the website itself,” he said.

 

Mr. Kennedy testified before Congress Thursday that HealthCare.gov was “100 percent” insecure, Washington Free Beaconreported.

For some context on this very important issue, check out the video below:

 

Full article here.

 

- advertisements -

Comment viewing options

Select your preferred way to display the comments and click "Save settings" to activate your changes.
Tue, 01/21/2014 - 01:01 | 4350641 PeaceLover
PeaceLover's picture

would it surprize you if he lied?

Mon, 01/20/2014 - 23:50 | 4350514 Tinky
Tinky's picture

It was actually only 20 seconds, but he was hacking from Colorado, and it seemed like four minutes.

Tue, 01/21/2014 - 00:01 | 4350544 pragmatic hobo
pragmatic hobo's picture

I wonder how "secure" are our other government web-sites ... such as IRS for example ...

Tue, 01/21/2014 - 00:01 | 4350545 SillySalesmanQu...
SillySalesmanQuestion's picture

100% strike rate! Must be 70,000 back doors...hmmmm.

Tue, 01/21/2014 - 07:46 | 4351044 Offthebeach
Offthebeach's picture

Yeah but the 70k accounts were all the same person, a Irving Goldberg, from Long Island with a cronic cat dander disability that has been trying to get a policy for five months.

Tue, 01/21/2014 - 00:05 | 4350553 dexter_morgan
dexter_morgan's picture

ACA moving FORWARD according to plan

Tue, 01/21/2014 - 00:11 | 4350560 worbsid
worbsid's picture

I'll bet most of the code is not documented as to why they did this or that ... one engineer told me, "The code speaks for itself."  The only documentation I saw about .gov site was, "We are not liable for the security of the data." in the introduction which is typical big company boilerplate. 

Tue, 01/21/2014 - 00:22 | 4350577 hairball48
hairball48's picture

Click my DOWN Arrow if any of you Zh readers are really surprised at this security nightmare?

Tue, 01/21/2014 - 00:41 | 4350601 QQQBall
QQQBall's picture

100% insecure - like its lead proponent

Tue, 01/21/2014 - 00:46 | 4350608 JLee2027
JLee2027's picture

4 minutes....faster than a speeding drone strike!

Tue, 01/21/2014 - 00:48 | 4350612 icanhasbailout
icanhasbailout's picture

Told you so. It's an identity theft machine. http://thebullelephant.com/healthcare-gov-is-an-identity-theft-machine/

 

Probably been mining .gov databases for some crooks from the moment they plugged in the network.

Tue, 01/21/2014 - 00:53 | 4350620 williambanzai7
williambanzai7's picture

Does it matter? Apparently no one cares about their privacy anymore unless it involves egg tossing and the identity of Kim Kardashian's Brazilian waxer.

Tue, 01/21/2014 - 07:52 | 4351000 negative rates
negative rates's picture

That's because YOU refused to put out the fire knuckle head.

Tue, 01/21/2014 - 07:47 | 4351047 Offthebeach
Offthebeach's picture

Don't forget the anal bleacher.

Tue, 01/21/2014 - 01:41 | 4350657 syntaxterror
syntaxterror's picture

Should the theft victims sue President Peaceprize directly? Or do they sue every person that signed that piece of shit Law?

Tue, 01/21/2014 - 01:20 | 4350666 bh2
bh2's picture

Ross Perot once said there are people who think that when they stand up and talk about something,  then they've done it.

If the WH actually believes this guy is wrong, all they have to do is offer him legal permission to  break in and prove it. The really hysterical part is that the POTUS claims there is "no evidence" of any breakins -- by virtue of the fact these geniuses have provided no means to detect breakins.

This is not unlike the claim that there is no evidence that mass data collection has resulted in even one incident of abuse. That's because reports of abuse to date have been deemed not to have been reports of abuse (which must come as some surprise to the FISA court judges who reported reprimanding the NSA for grossly exceeding their authority on several occasions).

One can only hope this laughable experiment in supremely amateur governance won't be repeated. But I wouldn't count on it.

Tue, 01/21/2014 - 08:50 | 4351106 Oldwood
Oldwood's picture

If a federally identified officer shows up at your door questioning you about your internet activities that should be your private property, who will you complain to? Once you feel the reality of the pressure of their boot on your neck, how secure will you feel in bringing more attention to yourself? I think regardless of the abuses we will hear nothing. Snowden didn't leave the country before making his disclosures for his health....or did he?

Tue, 01/21/2014 - 01:26 | 4350672 cameldojo
cameldojo's picture

I'm sure the internet security tsar will get to the bottom of this.

Tue, 01/21/2014 - 01:26 | 4350673 cameldojo
cameldojo's picture

I'm sure the internet security tsar will get to the bottom of this.

Tue, 01/21/2014 - 02:45 | 4350785 fudge
fudge's picture

What, just like that Target hack ;-)

Shit, these guys couldn't secure a latrine .. ROLF

Tue, 01/21/2014 - 01:29 | 4350675 OldPhart
OldPhart's picture

Four minutes?  Hell, I could have sex, clean up and pop a beer in that time.

Tue, 01/21/2014 - 01:49 | 4350708 Andre
Andre's picture

We can get DHS files?

Silver lining!

Tue, 01/21/2014 - 02:10 | 4350743 dunce
dunce's picture

If anyone wants the real sign up numbers they will have to hack the site and do a data sort program. Some Russian teenager may have already done just that, but why would they want info on people that have no money and are signing up to get a subsidy.

Tue, 01/21/2014 - 02:44 | 4350783 HardlyZero
HardlyZero's picture

Its a new profit center for drug dealers.  Get someone's info, or pimp-out your info, and its wide open baby !

Tue, 01/21/2014 - 02:27 | 4350762 Rising Sun
Rising Sun's picture

Good job Barry.

 

Time to get behind the microphone Barry and outwit the cyber security expert.

 

C'mon Barry - you're a fuckng intellect - tell us why everything is fine - you rotten fucking cocksucker.

Tue, 01/21/2014 - 02:38 | 4350777 q99x2
q99x2's picture

Somebody call the police. Obama was spotted somewhere near the white house Yellen and Clappering while Holdering his Hillary..

Tue, 01/21/2014 - 03:39 | 4350838 El Vaquero
El Vaquero's picture

Welllllllley welley well.  Yet another reason not to register, or sign up or whatever the fuck .gov calls giving your personal information to their enormous clusterfuck. 

 

My advice:  Cruise around the website if you want to see what it is about, but the first time it asks you for personal info, click X and say FUCK OFF. 

Tue, 01/21/2014 - 05:26 | 4350918 lakecity55
lakecity55's picture

Dude, Bath House probably has spyware and malware on that site to steal your info. Then he can hack your bank account for Mooch's next vacation.

Forward, Bananas!

Tue, 01/21/2014 - 04:09 | 4350877 JailBanksters
JailBanksters's picture

He could of sold each name for a Dollar, $70,000 Fiat Dollars !!!

 

Tue, 01/21/2014 - 04:40 | 4350896 smacker
smacker's picture

Now we know where the IT developers of the British NHS health system went to after their beloved IT project collapsed and was abandoned. Yes folks, they wrote Obamacare!!!

In the NHS IT system heyday, lists of NHS job applicants - including their full name, nationality, dob, age, private address, medical qualifications, career history, sexual orientation, etc etc - were all freely available in tabulated format to anyone in the world without even logging in or hacking the site.

Tue, 01/21/2014 - 05:23 | 4350915 lakecity55
lakecity55's picture

Just as its namesake is a created phony, LeechCareTM is a Potemkin Village.

Tue, 01/21/2014 - 07:55 | 4351054 Peter Pan
Peter Pan's picture

So how does anyone know if the site has not already been hacked already by some other person or organization?

Tue, 01/21/2014 - 08:43 | 4351087 kenezen
kenezen's picture

Gosh! A lot of misdirection is going on! First: Accenture, a really big auditing form should be there shortly with its international image on the line. If they find it was hacked or is hackable they'll get it fixed with their own forensic people of subs. The problem is two fold. If it has already been hacked no one knows how far up the food chain the hackers gone to strings like IRS, Department of health and many many others. These are some of the brightest Chinese and Russian   groups in the world working on this. It could make Target look like a bruise. hedgemaster.blogspot.com

Tue, 01/21/2014 - 08:58 | 4351122 Fix It Again Timmy
Fix It Again Timmy's picture

A government does its best work when it is shutdown or on recess....

Tue, 01/21/2014 - 09:19 | 4351164 Duude
Duude's picture

But your healthcare info and social security number aren't really all that important, and anyone that states otherwise is just UnAmerican. 

Tue, 01/21/2014 - 09:52 | 4351295 dark pools of soros
dark pools of soros's picture

the breaking point is that they try to give poor people free shit so they have to include all this eligibility checking nonsense

 

just make some flat rate type insurance to wipe out the overhead.   $200 per month per person and it pays 80% on the first $5000 then 70% on the next $5000, and so on..  or whatever

but like taxes they have to make a whole clusterfuck industry and legislation waste to do anything besides actually providing the actual health care

Tue, 01/21/2014 - 11:07 | 4351494 michigan independant
michigan independant's picture

https://duckduckgo.com/?q=luddites+moral+question Observations are never a solution. I say open carry to reconsider facts for those lacking the thin veneer.

Tue, 01/21/2014 - 12:31 | 4351741 ConManipulation
ConManipulation's picture

FOOK EVERYTHING ABOUT OBAMA & EVERYONE AROUND HIM!!

Do NOT follow this link or you will be banned from the site!