The Department of Health of the Generalitat has started an internal investigation after having detected “specific cases” of password theft to access La Meva Salut, the public application that allows you to consult your medical history, make appointments and request prescriptions.
The passwords would have been used, precisely, to modify the contact information of some users and request an online appointment with the family doctor to request a drug prescription. Specifically, the Generalitat detected nine cases between June and October. From then on, it began a “proactive identification” process that led to the discovery of a hundred more thefts.
The Department has notified the situation to the Catalan Data Protection Authority and has contacted the affected users. Likewise, it is working on strengthening the security of the application.
The first of the changes will be the requirement for double authentication: in addition to the password, users must enter a code that will be sent to them by SMS.
Likewise, it will be necessary to increase the complexity of passwords, which implies that they have a minimum of 8 characters and, at least, one lowercase letter, one uppercase letter, a number and a special character.
#Generalitat #investigates #theft #passwords #access #health #app #request #drugs