Security platform provider Armis today announced a patch and mitigation steps to address nine critical vulnerabilities in the firmware for a pneumatic tube system used by more than 3,000 hospitals, primarily in North America. According to Armis, the firmware powers all current models of the Translogic pneumatic tube system station made by Swisslog Healthcare. For more on the vulnerabilities and recommended actions, see the Armis blog.

John Riggi, AHA senior advisor for cybersecurity and risk, said, “Although the mechanical principles of pneumatic tubes date back over 100 years, today’s pneumatic tubes for delivering medications, blood products and lab samples across multiple departments of a hospital are highly computerized and network-connected, making them highly efficient. However, the vulnerabilities identified make them susceptible to cyber or ransomware attack. Disruption of a hospital pneumatic tube system would have widespread impact on care delivery operations, potentially resulting in delay of treatment and the need for increased emergency staffing to hand carry the essential items between departments.”  

For further information on this or other cyber and risk issues, contact Riggi at jriggi@aha.org
 

Related News Articles

Headline
The Cybersecurity and Infrastructure Security Agency, FBI and National Security Agency yesterday issued an advisory to help organizations secure their…
Headline
John Riggi, AHA’s senior advisory for cyber security and risk, speaks with Edward You, supervisory special agent in the FBI’s Weapons of Mass Destruction…
Headline
The National Institute of Standards and Technology will work with technology leaders to develop a framework to improve security in the technology supply chain…
Headline
The FBI today released an alert on Hive ransomware, which uses mechanisms such as phishing emails with malicious attachments and Remote Desktop Protocol to…
Headline
The FBI yesterday alerted U.S. organizations to ransomware attacks by a group using phishing emails to access victim networks and download Cobalt Strike threat…
Headline
BlackBerry yesterday announced a set of cyber vulnerabilities in its QNX Real Time Operating System for medical devices and other products, which a remote…