We use cookies to understand how you use our site and to improve your experience. This includes personalizing content and advertising. To learn more, click here. By continuing to use our site, you accept our use of cookies. Cookie Policy.

MedImaging

Download Mobile App
Recent News Radiography MRI Ultrasound Nuclear Medicine General/Advanced Imaging Imaging IT Industry News

Majority of Imaging Devices Are Exposed to Cyber Attacks

By MedImaging International staff writers
Posted on 24 Mar 2020
A new study reveals that 83% of medical imaging devices are running on unsupported operating systems and are susceptible to cyberattacks.

To estimate potential vulnerabilities, researchers at Palo Alto Networks (PAN; Santa Clara, CA, USA) analyzed 1.2 million Internet of Things (IoT) devices in thousands of physical locations in the United States located in enterprise information technology (IT) and healthcare organizations. Using the PAN IoT security product, Zingbox, they identified the top IoT threats, and also provided recommendations for immediately reducing IoT risk in their environments.

Image: Breakdown of operating system support for medical imaging devices (Photo courtesy of PAN)
Image: Breakdown of operating system support for medical imaging devices (Photo courtesy of PAN)

The study showed that 51% of all threats in healthcare organizations involve imaging devices, disrupting quality of care and allowing attackers to exfiltrate patient data stored on these devices. This is mainly due to the fact that 83% of medical imaging devices are running on unsupported operating systems, and therefore not receiving any more software updates. This reflects a 56% increase from 2018, mostly as a result of the Microsoft (Redmond, WA, USA) Windows 7 operating system reaching its end of life.

The researchers also found that 72% of healthcare networks mix IoT and IT assets, allowing malware to spread from users’ computers to vulnerable IoT devices on the same network. In addition, a majority of hospitals fail to maintain a significant number of sub-networks to separate devices within their facilities. Without such separation, hackers can access medical imaging devices with unpatched operating system bugs and exploit them to bore even deeper into the system. Outdated operating system vulnerabilities also put devices at risk for infection by any indiscriminate worm that infects all manner of networked computers.

“Windows 7 has been a stable operating system for a lot of people for a long time and that’s what folks look for when they’re building an IoT device. It’s just that, eventually, operating systems go out of support,” said Ryan Olson, vice president of threat intelligence at Palo Alto Networks. “Windows 7 has been out in the market for a long time and people have known this was coming for a while, but updating IoT devices in general, including medical IoT devices, is challenging for a lot of organizations.”

Threats that target IoT devices use sophisticated and evasive techniques, such as peer-to-peer command and control communications and worm-like features for self-propagation. PAN therefore recommends several steps be taken immediately to reduce exposure to targeted IoT threats, including identifying all IoT devices on the network, patching security software on printers and other easily patchable devices, enabling active monitoring, and segmenting devices across virtual local area networks (VLAN's).

Related Links:
Palo Alto Networks
Microsoft



Gold Member
Solid State Kv/Dose Multi-Sensor
AGMS-DM+
Compact C-Arm with FPD
Arcovis DRF-C R21
Portable Radiology System
DRAGON ELITE & CLASSIC
Portable X-Ray Unit
AJEX240H

Latest General/Advanced Imaging News

New AI Method Captures Uncertainty in Medical Images

CT Coronary Angiography Reduces Need for Invasive Tests to Diagnose Coronary Artery Disease

Novel Blood Test Could Reduce Need for PET Imaging of Patients with Alzheimer’s