Posted on 11/03/2013 5:36:06 AM PST by Hojczyk
Justin Hadley was using the Obamacare website when he was accidentally sent "eligibility letters" addressed to other people -- in other states.
"Justin Hadley logged on to HealthCare.gov to evaluate his insurance options after his health plan was canceled. What he discovered was an apparent security flaw that disclosed eligibility letters addressed to individuals from another state," the Heritage Foundation reports.
I was in complete shock, said Hadley, who contacted Heritage after becoming alarmed at the breach of privacy.
Hadley, a North Carolina father, buys his insurance on the individual market. His insurance company, Blue Cross Blue Shield of North Carolina, directed him to HealthCare.gov in a cancellation letter he received in September.
After multiple attempts to access the problem-plagued website, Hadley finally made it past the registration page Thursday. Thats when he was greeted with downloadable letters about eligibility for two people in South Carolina.
Here's a screen shot of one of the "eligibility letters" he wasn't supposed to receive:
(Excerpt) Read more at weeklystandard.com ...
My bet is that the system has already been hacked and they are not telling anyone.
================================================
No problem, taxpayers---"cutting edge" govt is fixing the web site.

OBAMA CALLS Mrs O: "Before she pocketed some of the billion dollars,
your pal shoulda told us they didn't teach web site construction at Princeton."
SECY SIBELIUS TO OBAMA: "While you're on your brand new brick
phone, Mr President, get a few more cases of these cute floppy disks
Mrs O's Princeton classmate provided."
Academia a##wipe know it alls. They feel they went to school, they are enlightened more so than the peons below them, they self engrandize themselves, give themselves awards, and shut you down when you speak.........so this is what we get......failure on a grand scale. Hey Valarie hows that empty headed puppet you paraded around as intelligence far beyond mortal men? emenies inside the gate
Even so, I do not think this was hacking.
I think it is due to lack of change management.
You have data entered on one version of the software.
You are “fixing” the software daily without adequate change management and testing.
Probably without freezing the LIVE data files or properly converting the files from one software version to another.
The new version of this software module points to the record key the data layout now tells it to, and no surprise it is a different record. Since they do not freeze the entire system to make changes on some modules, there are likely different modules running with different or incompatible data layout definitions.
I am not surprised by this outcome at all. I remarked early on in this fiasco, that the system is not the traditional garbage in, garbage out, but it is bound to be CREATING GARBAGE.
They are doing fixes with LIVE DATA FILES with personal data of REAL PEOPLE! This is abominable.
Sebelius was confronted by the security problems in the hearing and asked if she would shut it down until security was adequately implemented and verified. SHE SAID NO! And to further illustrate the stupidity of that decision, the system was down as she refused to shut it down!
This is, as they say “HUGH” HA!— their data created by on-line system are garbage. Almost have to be. There has been no single clean thread from data in to processing to data out. Software changes daily between the data entered and the final products.
That is why the insurance companies have been transmitted garbage records, but they have contacted the people who made it through and thought they had purchased a policy, directly. MANUALLY.
It needs to be SHUT DOWN IMMEDIATELY because it is provably insecure.
Do you see why they cannot fix this thing? Fixes on the fly create more errors within the huge spaghetti bowl that is ObamaScare.
Oh, you KNOW it's happened .... the system has a wide open door with a "welcome hackers" sign!
We don't want it shut down. We WANT the chaos to continue. It just keeps shining the light on these incompetent idiots.
I say let the thing burn itself to the ground.
Probably hacked, but there was so much lacking in the programming, along with so many interconnections to other agencies to "share" the info with everyone who conspires against the People, that it may very well be a product of the system without the aid of hackers.
It needs to be SHUT DOWN because it is messing with real people’s personal data and security.
There is no logical alternative. They do not have until 30 Nov any longer to “fix” it.
This will blow the top off it.
Sorry, but if you fell for the scam then you deserve to have your information compromised. I have no sympathy for them.
The logical alternative is to not use it.
The letters, dated October 8, acknowledge receipt of an application to the Health Insurance Marketplace and the eligibility of family members to purchase health coverage. One of the letters was addressed to Thomas Dougall, a lawyer from Elgin, SC.
A lawyer, eh? I smell a bigtime lawsuit in the works.
Sounds to me like the door is wide open, hacking would simply be a waste of time.
I did not fall for the scam. And people who did enter data do not in any way deserve to have their information compromised.
The alternative IS to not use it, I agree. Even the people who had their policies cancelled and are scrambling for an alternative have to realize by now that entering their data will make things even worse for them.
The data already gathered has to be destroyed. The data files are corrupt, by the corrupt system which captures and processes it, implemented by the corrupt Democrats and contractors.
I find it interesting that companies like Google, RedHat, and Oracle are sending in gurus to help out.
Because every floundering mega project needs a few more egotistical generals to direct the troops....
IMHO the Nov 30 date to have something that “looks like a functioning system” from the user perspective is no longer viable.
They were just punting and hoping by setting a date. Hoping they could come up with something between now and then.
The gurus are for PR to make it seem that all the king’s experts and all the king’s men, the best and brightest, are on hand. To raise confidence in the hollow promise that it can be fixed by 30 Nov in any meaningful form.
When it was perceived to be just a lousy web-site, they might have pasted some smoke and mirrors interface on the thing by Nov 30.
Now it is obvious that the data are corrupt. That cannot be fixed. Even if they were able to fix the software problems that messed up the data, the data already entered cannot be fixed. There is no way to verify what the person entered on-line compared to what the various versions of the software have updated to anyone’s data.
This problem is no surprise to anyone who has worked with software. It is vital to protect the live data files, and test with test files. They have not taken the time to do that. They have predictably corrupted the data. Not just data but confidential, personal information.
This whole Obamacare website deal seems to have broken thru the MSM “armor plating” around the Baraqqi regime.
Both in daily news reporting and the late night comedy snarks.
Will be interesting to see them in a month.
“Will be interesting to see them in a month.”
That’s what I thought too , , ,
but showing one person’s data to another user — not even a skilled hacker —
they had better say something tomorrow morning, if not today.
How can they spin this? It is just anecdotal? It is just one person’s private information that was shown to someone else? We are fixing it right now??
The horse is out of the barn, too late to close the door.
I once talked to a security expert who was able to hack into every agency except the White House. The Obamacare website must be a hacker's dream.
Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.