FEDweek IT

David Kennedy of TrustedSec also called attention to a recent report that the HealthCare.gov website has been attacked by hackers in one way or another 16 times so far – saying such number is alarming not because it’s high but because it’s improbably low.

To Kennedy, thenumber indicates "the lack of a formal detection and prevention capability within the website and its infrastructure," adding that an international corporation he worked for had its main website attacked 230 times a day on average and that HealthCare.gov is most certainly being probed often and will continue to be a target.

There has been scant visibility in regard to the actual attacks occurring on the site, meaning successful attacks could go unnoticed and unmitigated for an indeterminate amount of time, he said.

Few precautions were taken, according to Kennedy, such as preventing browsing on the site from the Onion Router TOR network, which masks traffic origin.