Page 15 - The Insurance Times November 2024
P. 15
Ò»©
100 Hospitals Achieve
Star Health's CISO Involved in Customer Data Leak
Digital Certification from The chief information security officer (CISO) of Star Health Insurance was
NABH behind the company's recent massive customer data breach, claimed a
hacker who has put the data on sale on his website. The hacker, identifying
To overhaul healthcare services and
enhance patient care in hospitals, the as xenZen, said that CISO provided the API access to the entire customer
data, and posted a video showing the reception of the customer data via
National Accreditation Board for Hos-
pitals & Healthcare Providers (NABH) email from CISO.
revealed that so far, 100 hospitals UK-based cyber security researcher Jason Parker uncovered the data breach
across India have received digital when xenZen posted a sale listing on breach forums. Parker told that the
health certification. hacker, when pressed for the source of the leak, showed him chats and email
communication and screen recording with CISO.
A total of 300 hospitals had applied for
the digital certification, which was in- "I have gone through the video. Being a security researcher, I know it does
troduced by NABH in 2023. not appear to be fake or altered at all. The emails are loading live as he is
browsing them, which negates any possibility of it being spoofed or edited.
Speaking at the CII Hospital Tech 2024
summit, Rizwan Koita, chairperson of I think it needs to be investigated by an independent govt agency," Parker
NABH, emphasised that the digital said.
certification is designed to ensure best The hacker claims to possess 7.24 TB data of the policy holders and claims,
practices in healthcare through the including names, phone number, addresses, medical records, PAN, policy
use of technology. details, detailed medical records, claim amounts. The hacker has displayed
the data of a few customers as samples and has set up a chatbot to sell
"This initiative will streamline healthcare
data, the whole for $150,000.
operations, ensuring that hospitals ad-
here to standardised, high-quality pro-
cesses," he said, adding the certification registration, ICU management, inpa- Ayushman Bharat May
is expected to improve patient outcomes tient care, outpatient services, and
by making complex clinical protocols emergency departments. Soon Include Alzheimer's
easier to follow through automated sys- The accreditation involves self-evalua- and Dementia Coverage
tems that guide healthcare profession- tion followed by external assessment, Treatment for Alzheimer's, dementia,
als at every stage of care.
resulting in platinum or gold-level cer- heart failure and other illnesses, mostly
The certification aims to overhaul tifications based on performance. The affecting seniors, may soon get cov-
healthcare practices by embedding process involves evaluating hospitals ered under Ayushman Bharat-Pradhan
software-driven protocols that across seven areas, including infra- Mantri Jan Arogya Yojana. At present,
standardise every step of patient care structure, data security, information AB-PMJAY has around 25 health pack-
across hospital departments, including flow, and digital processes. ages catering to needs of the elderly.
The Insurance Times November 2024 13