Case Study · TeleHealth Platform
"On-Call" Hacking: Healthcare's Biggest Liability

Health Records, Medical Data, & Billing Exposed Despite Encryption, WAF, & HIPAA Safeguards

Company Description

A global telehealth platform exposed electronic health records, consultation transcripts, insurance claims, prescribing data, and billing information, leaving sensitive data at risk of breach, fines, and reputational loss.

Perfai Security's Role

Autonomous app testing across 145 endpoints. With 62 vulnerabilities found (48 critical/high), the agents flagged, prioritized, and instantly remediated issues — reducing what would have taken months of manual effort.

App Count
1
Endpoints Tested
145
Vulnerabilities
62
Critical / High
48

What we found, in plain English

Full technical findings

Sensitive Data Exposures

  • Specialists
    • PII
    • History
  • Groups
  • Family Members
  • Interventions / Consultations
  • Programs
  • Users
    • Credentials
    • PII
    • History
    • Tasks
  • Scheduled-Access

Testing Categories

  • OWASP API Security Top-10 List
  • OWASP Web Top-10 List
  • Perfai Security Next-Gen Top-30 List
  • OWASP Business Logic Top-10 List
  • OWASP Mobile Top-10 List
  • OWASP AI Agent Top-10 List
  • RBAC
Estimated Breach Cost With:
50 Customers  |  $388,000

See what Perfai Security finds in your app

Paste a URL. Get a free security report in minutes.

Start Free →