Categories: Anti-malware

Pacemakers are far more vulnerable to hacking than we thought

A team of researchers find 8,000 bugs in pacemaker codes.

 

Mariella Moon, @mariella_moon

 

I know that this topic has been the subject of previous threads but believe the informasiton here is new/additional.

 

 

 

Back in January, the FDA has finally acknowledged that some pacemakers and other cardiac devices are vulnerable to hacking. But how vulnerable are they, exactly? A security company called WhiteScope has discovered 8,000 bugs that hackers can exploit in pacemaker programmers — the tools used to adjust and monitor the device itself — from four different manufacturers. More importantly, the researchers said they’ve also discovered that pacemakers don’t authenticate programmers, so any working tool listed on eBay has the potential to harm patients with the implant.

 

Manufacturers are supposed to control programmers’ distribution, but the researchers themselves got their test devices from the auction website for as little as $500 to as much as $3,000. In addition to those issues, the team has found that doctors’ monitoring systems don’t require log-in names and passwords when pacemakers connect to them. They even found unencrypted patients’ data stored in the tools, including SSNs, names, phone numbers and medical conditions.

 

 

Full Article

Take a look at the best antivirus, anti-malware, anti-spy, etc. software

Powered by WPeMatico

admin

Recent Posts

Russian FSB Counterintelligence Chief Gets 9 Years in Cybercrime Bribery Scheme

The head of counterintelligence for a division of the Russian Federal Security Service (FSB) was… Read More

5 days ago

Who Stole 3.6M Tax Records from South Carolina?

For nearly a dozen years, residents of South Carolina have been kept in the dark… Read More

2 weeks ago

Crickets from Chirp Systems in Smart Lock Key Leak

The U.S. government is warning that “smart locks” securing entry to an estimated 50,000 dwellings… Read More

2 weeks ago

Why CISA is Warning CISOs About a Breach at Sisense

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) said today it is investigating a breach… Read More

2 weeks ago

Twitter’s Clumsy Pivot to X.com Is a Gift to Phishers

On April 9, Twitter/X began automatically modifying links that mention “twitter.com” to read “x.com” instead.… Read More

2 weeks ago

April’s Patch Tuesday Brings Record Number of Fixes

If only Patch Tuesdays came around infrequently — like total solar eclipse rare — instead… Read More

3 weeks ago