MedImaging

Download Mobile App
Recent News Radiography MRI Ultrasound Nuclear Medicine General/Advanced Imaging Imaging IT Industry News

Majority of Imaging Devices Are Exposed to Cyber Attacks

By MedImaging International staff writers
Posted on 24 Mar 2020
Print article
Image: Breakdown of operating system support for medical imaging devices (Photo courtesy of PAN)
Image: Breakdown of operating system support for medical imaging devices (Photo courtesy of PAN)
A new study reveals that 83% of medical imaging devices are running on unsupported operating systems and are susceptible to cyberattacks.

To estimate potential vulnerabilities, researchers at Palo Alto Networks (PAN; Santa Clara, CA, USA) analyzed 1.2 million Internet of Things (IoT) devices in thousands of physical locations in the United States located in enterprise information technology (IT) and healthcare organizations. Using the PAN IoT security product, Zingbox, they identified the top IoT threats, and also provided recommendations for immediately reducing IoT risk in their environments.

The study showed that 51% of all threats in healthcare organizations involve imaging devices, disrupting quality of care and allowing attackers to exfiltrate patient data stored on these devices. This is mainly due to the fact that 83% of medical imaging devices are running on unsupported operating systems, and therefore not receiving any more software updates. This reflects a 56% increase from 2018, mostly as a result of the Microsoft (Redmond, WA, USA) Windows 7 operating system reaching its end of life.

The researchers also found that 72% of healthcare networks mix IoT and IT assets, allowing malware to spread from users’ computers to vulnerable IoT devices on the same network. In addition, a majority of hospitals fail to maintain a significant number of sub-networks to separate devices within their facilities. Without such separation, hackers can access medical imaging devices with unpatched operating system bugs and exploit them to bore even deeper into the system. Outdated operating system vulnerabilities also put devices at risk for infection by any indiscriminate worm that infects all manner of networked computers.

“Windows 7 has been a stable operating system for a lot of people for a long time and that’s what folks look for when they’re building an IoT device. It’s just that, eventually, operating systems go out of support,” said Ryan Olson, vice president of threat intelligence at Palo Alto Networks. “Windows 7 has been out in the market for a long time and people have known this was coming for a while, but updating IoT devices in general, including medical IoT devices, is challenging for a lot of organizations.”

Threats that target IoT devices use sophisticated and evasive techniques, such as peer-to-peer command and control communications and worm-like features for self-propagation. PAN therefore recommends several steps be taken immediately to reduce exposure to targeted IoT threats, including identifying all IoT devices on the network, patching security software on printers and other easily patchable devices, enabling active monitoring, and segmenting devices across virtual local area networks (VLAN's).

Related Links:
Palo Alto Networks
Microsoft


Gold Member
Solid State Kv/Dose Multi-Sensor
AGMS-DM+
New
Ultrasound System
P20 Elite
New
Mobile Digital C-arm X-Ray System
HHMC-200D
New
Ceiling-Mounted Digital Radiography System
Radiography 5000 C

Print article

Channels

Ultrasound

view channel
Image: CAM figures of testing images (Photo courtesy of SPJ; DOI:10.34133/research.0319)

Diagnostic System Automatically Analyzes TTE Images to Identify Congenital Heart Disease

Congenital heart disease (CHD) is one of the most prevalent congenital anomalies worldwide, presenting substantial health and financial challenges for affected patients. Early detection and treatment of... Read more

Nuclear Medicine

view channel
Image: Whole-body maximum-intensity projections over time after [68Ga]Ga-DPI-4452 administration (Photo courtesy of SNMMI)

New PET Agent Rapidly and Accurately Visualizes Lesions in Clear Cell Renal Cell Carcinoma Patients

Clear cell renal cell cancer (ccRCC) represents 70-80% of renal cell carcinoma cases. While localized disease can be effectively treated with surgery and ablative therapies, one-third of patients either... Read more

Imaging IT

view channel
Image: The new Medical Imaging Suite makes healthcare imaging data more accessible, interoperable and useful (Photo courtesy of Google Cloud)

New Google Cloud Medical Imaging Suite Makes Imaging Healthcare Data More Accessible

Medical imaging is a critical tool used to diagnose patients, and there are billions of medical images scanned globally each year. Imaging data accounts for about 90% of all healthcare data1 and, until... Read more