DHS Issues Cyber Alert for Siemens Medical Devices

Aug. 7, 2017
The Department of Homeland Security issued an advisory Friday after Siemens identified four vulnerabilities in its Molecular Imaging products running on Windows 7.

The Department of Homeland Security issued an advisory Friday after Siemens identified four vulnerabilities in its Molecular Imaging products running on Windows 7.

Munich, Germany-based Siemens is preparing updates for the affected products, which are used in medical imaging, according to the advisory.

DHS reports in the report that these vulnerabilities could be exploited remotely, and an unauthenticated remote attacker could execute arbitrary code by sending crafted HTTP requests to the Microsoft web server of affected devices. Exploits that target these vulnerabilities are known to be publicly available.

Siemens reports that the vulnerabilities affect the following products: Siemens PET/CT Systems: All Windows 7-based versions; Siemens SPECT/CT Systems: All Windows 7-based versions; Siemens SPECT Systems: All Windows 7-based versions, and Siemens SPECT Workplaces/Symbia.net: All Windows 7-based versions.

Siemens is working on updates for the affected products, but is recommending organizations take precautions, such as protecting network access to the Molecular Imaging products with appropriate mechanisms. The company also recommends that users have appropriate backups and system restoration procedures.

Sponsored Recommendations

Admit it, your EHR can’t do everything: Strategies for efficiency and better consumer experiences

Discover strategies to overcome EHR limitations and boost efficiency in your practice. Join industry leaders as they explore how a unified care enablement model can streamline...

Driving top quality performance through data-driven actionable insights.

Join us to explore how data-driven insights are transforming healthcare. Learn how leveraging big data and analytics can enhance patient care, optimize workflows, and drive top...

CMS Interoperability and Prior Authorization Final Rule: What no one is thinking about but should be

Join our panel as we explore the overlooked challenges of the CMS Interoperability and Prior Authorization Final Rule. Discover key implications for payers and providers, and ...

The Race to Replace POTS Lines: Keeping Your People and Facilities Safe

Don't wait until it's too late—join our webinar to learn how healthcare organizations are racing to replace obsolete POTS lines, ensuring compliance, reducing liability, and maintaining...