The Food and Drug Administration today recommended medical device manufacturers, health care providers and patients take certain actions to reduce the risk that a remote attacker could exploit a set of cybersecurity vulnerabilities to control a medical device or prevent it from functioning. The agency to date has not received any adverse event reports associated with the vulnerabilities, announced in a July advisory from the Department of Homeland Security. The vulnerabilities exist in IPnet, a third-party software component that supports network communications between computers. The software is part of several operating systems and may be used in a wide range of medical and industrial devices.
 

Headline
In a new blog, John Riggi, AHA national advisor for cybersecurity and risk, and Scott Gee, AHA deputy national advisor for cybersecurity and risk, highlight…
Headline
The Senate passed the Health Care Cybersecurity and Resilience Act on Sept. 30 by unanimous consent. The bipartisan bill seeks to improve coordination between…
Headline
The AHA provided comments Sept. 30 to the Senate Homeland Security and Governmental Affairs Subcommittee on Disaster Management, District of Columbia and…
AHA Cyber Intel
While we may feel inundated with alarming news about escalating cyber threats against healthcare organizations, there is also some good news. Let’s explore how…
Headline
The FBI Sept. 29 announced an arrest of one of the alleged leaders of ShinyHunters, a cybercriminal group linked to cyberattacks in the U.S. and…
Headline
The Food and Drug Administration released draft guidance Sept. 24 that includes recommendations on non-clinical testing, clinical data and labeling for…