Medical Device Security

Medical Device Security Vulnerabilities Discovered in Baxter Infusion Pumps

by Jill McKeon

Four medical device security vulnerabilities are impacting certain Sigma and Baxter Spectrum infusion pumps, a Cybersecurity and Infrastructure Security Agency (CISA) explained in an advisory....

Top Mid-Year Healthcare Cybersecurity Trends

by Jill McKeon

A constant stream of ransomware attacks, increasing technological complexity, and escalating medical device security concerns across the sector have put pressure on healthcare cybersecurity efforts so far in 2022. In conversation...

Undefined Roles, Responsibilities For Medical Device Security Heighten Risks

by Jill McKeon

Nearly 80 percent of 517 survey respondents did not consider their organization’s IoT and IoMT cybersecurity activities to be mature, research conducted by Cynerio and the Ponemon Institute...

AHA Expresses Member Support for PATCH Act, Medical Device Security

by Jill McKeon

On behalf of its nearly 5,000 member healthcare organizations, the American Hospital Association (AHA) expressed its support for the Protecting and Transforming Cyber Health Care (PATCH) Act, which was...

Select Hillrom Electrocardiograph Products Impacted by Medical Device Vulnerabilities

by Jill McKeon

Two medical device vulnerabilities in select Hillrom electrocardiograph products may cause unauthorized access and security risks, a Cybersecurity and Infrastructure Security Agency (CISA) ICS advisory...

Bill Calls on FDA to Regularly Update Medical Device Security Guidelines

by Jill McKeon

The recently introduced Strengthening Cybersecurity for Medical Devices Act called on the US Food and Drug Administration (FDA) to review and update its medical device security guidelines more...

RSA Conference: Experts Say Medical Device Security Trending in Right Direction

by Jill McKeon

At the RSA Conference, currently being held in San Francisco and virtually, panelists gathered for a session to discuss medical device security challenges. Audience members posed questions about the...

BD, CISA Warn of Medical Device Security Vulnerabilities in BD Synapsys, Pyxis Devices

by Jill McKeon

Becton, Dickinson and Company (BD) disclosed two medical device security vulnerabilities found in certain Synapsys and Pyxis devices. The Pyxis vulnerabilities (CVE-2022-22767) received a CVSS score of...

FDA Urges Healthcare to Patch Severe Illumina Cybersecurity Vulnerabilities

by Jill McKeon

The US Food and Drug Administration (FDA) urged healthcare organizations to immediately patch severe cybersecurity vulnerabilities impacting certain Illumina medical devices. The vulnerabilities impact...

MDIC, HSCC Team Up to Establish Medical Device Security Benchmarks

by Jill McKeon

The Medical Device Innovation Consortium (MDIC) and the Healthcare and Public Health Sector Coordinating Council (HSCC), in partnership with Booz Allen Hamilton, created a new survey with the goal of...

Exploring the Value, Limitations of Medical Device Security Legislation

by Jill McKeon

Recently introduced medical device security legislation such as the Protecting and Transforming Cyber Health Care (PATCH) Act, the Food and Drug Administration's (FDA) medical device security provisions within its user fee...

FDA Bill Includes Medical Device Security Requirements For Manufacturers

by Jill McKeon

Recently introduced Food and Drug Administration (FDA) user fee legislation contains medical device security provisions that aim to quell cybersecurity concerns at the premarket stage. The bipartisan...

HSCC Publishes Medical Device Vulnerability Communications Toolkit

by Jill McKeon

Medical device vulnerabilities are a growing concern in healthcare, as exemplified by recent vulnerability disclosures that could allow hackers to control systems remotely. However, most vulnerability...

JekyllBot:5 Vulnerabilities Impact Mobile Robot Used in Healthcare

by Jill McKeon

Aethon TUG smart autonomous mobile robots may be impacted by five newly discovered critical zero-day vulnerabilities found by researchers at Cynerio. The vulnerabilities, dubbed JeckyllBot:5, could...

FDA Seeks Feedback on Medical Device Security Guidance

by Jill McKeon

The US Food and Drug Administration (FDA) is seeking feedback on its medical device security guidance surrounding premarket submission cybersecurity considerations. Stakeholders have until July 7,...

Software Vulnerabilities Point to Need for ICS Security in Healthcare

by Jill McKeon

The Cybersecurity and Infrastructure Security Agency (CISA) recently issued an industrial control system (ICS) medical advisory regarding the LifePoint Informatics patient portal. If exploited, the...

Senators Introduce PATCH Act to Ensure Medical Device Security

by Jill McKeon

US Senators Bill Cassidy (R-LA) and Tammy Baldwin (D-WI) introduced the Protecting and Transforming Cyber Health Care (PATCH) Act with the intention of ensuring medical device security at the premarket...

FDA, OIG Request Cybersecurity Investments in FY 2023 Budget

by Jill McKeon

The Biden Administration announced its FY 2023 budget proposal, which contains increased investments in cybersecurity across critical infrastructure. “The Budget invests in cybersecurity...

Medical Device Security Requires Standards, Shared Responsibility

by Jill McKeon

Medical device security is arguably one of the biggest security challenges healthcare organizations face today. With thousands of connected devices moving around a hospital at once, organizations have historically struggled to keep a...

HSCC Focuses On Medical Device Security in New Contract Language Template

by Jill McKeon

The Healthcare & Public Health Sector Coordinating Councils (HSCC) published model contract language to help healthcare organizations ensure medical device security when crafting contracts with...