Playing With FHIR

Hacking and Securing FHIR APIs

Oct 13, 2021

Playing With FHIR

Hacking and Securing FHIR APIs

Alissa Knight has spent the last year focusing on hacking Fast Healthcare Interoperability and Resources (FHIR) APIs, working with some of the world’s largest Electronic Health Record (EHR) companies in her vulnerability research. This report represents her findings underscoring a systemic lack of basic protections in FHIR API implementations resulting in unauthorized access to an innumerable number of patient records.

Summary

Alissa Knight

Oct 13, 2021

Get to know
Me.

Contact me, let's talk.

Team working in an office watching at a presentation

Get to know
Me.

Contact me, let's talk.

Team working in an office watching at a presentation

Get to know
Me.

Contact me, let's talk.

Team working in an office watching at a presentation
We are currently based in Las Vegas, NV and work remotely.

Timezone (GMT+1)

Stay in the Loop

Stay informed about my latest news, updates by subscribing to our newsletter.

We respect your inbox. No spam, just valuable updates.

Offline

Alissa Knight 10845 Griffith Peak Drive, Floor 2, Las Vegas, NV 89135
(213) 786-1970

© Copyright Alissa Knight 2025

We are currently based in Las Vegas, NV and work remotely.

Timezone (GMT+1)

Stay in the Loop

Stay informed about my latest news, updates by subscribing to our newsletter.

We respect your inbox. No spam, just valuable updates.

Offline

Alissa Knight 10845 Griffith Peak Drive, Floor 2, Las Vegas, NV 89135
(213) 786-1970

© Copyright Alissa Knight 2025

We are currently based in Las Vegas, NV and work remotely.

Timezone (GMT+1)

Stay in the Loop

Stay informed about my latest news, updates by subscribing to our newsletter.

We respect your inbox. No spam, just valuable updates.

Offline

Alissa Knight 10845 Griffith Peak Drive, Floor 2, Las Vegas, NV 89135
(213) 786-1970

© Copyright Alissa Knight 2025