FDA alerts providers, others to medical device cyber vulnerability

The Food and Drug Administration today recommended medical device manufacturers, health care providers and patients take certain actions to reduce the risk that a remote attacker could exploit a set of cybersecurity vulnerabilities to control a medical device or prevent it from functioning. The agency to date has not received any adverse event reports associated with the vulnerabilities, announced in a July advisory from the Department of Homeland Security. The vulnerabilities exist in IPnet, a third-party software component that supports network communications between computers. The software is part of several operating systems and may be used in a wide range of medical and industrial devices.
Related News Articles
Headline
In part one of a new blog, John Riggi, AHA national advisor for cybersecurity and risk, and Scott Gee, AHA deputy national advisor for cybersecurity and risk,…
Headline
The Food and Drug Administration has identified a Class I recall of Abiomed Automated Impella Controllers due to the potential for serious injury or death. The…
Perspective
This week, the FBI issued an urgent warning to all users — including hospitals — of a critical security soft spot within Oracle’s E-Business Suite, stating “…
Headline
The Health Sector Coordinating Council Oct. 7 released its Sector Mapping and Risk Toolkit, created to help health care providers and other organizations…
AHA Cyber Intel
As of Oct. 3, 2025, 364 hacking incidents had been reported to the U.S. Department of Health and Human Services Office for Civil Rights, affecting over 33…
Headline
The AHA Oct. 6 released a Cybersecurity Advisory urging immediate action against a critical Oracle E-Business Suite vulnerability that is remotely exploitable…