Image
 
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 33 guests and 2 members online
EH-Net Donations

Enter Amount:
$

Google Ads
EH-Net News Feeds
Latest Additions
Book Recommendations





 
Advertisement

You are here: Home arrow Forum arrow Ethical Hacking Discussions and Related Certificationsarrow Hardwarearrow Defibrilator hack
Ethical Hacker Community Forums
January 08, 2009, 02:02:16 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: ChicagoCon 2009 - May 4 - 9. Boot Camps & an Ethical Hacking Conf. www.chicagocon.com
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Defibrilator hack  (Read 2002 times)
0 Members and 1 Guest are viewing this topic.
iSmith
Full Member
***
Offline Offline

Posts: 157


Do or do not. There is no try. - Yoda


View Profile
« on: March 12, 2008, 09:10:38 AM »

They have now hacked defibrilators. Read the full story here. http://news.yahoo.com/s/ap/20080312/ap_on_hi_te/heart_device_hacking
Logged

In my eyes, your operating system is as solid as swiss cheese.
dean
Full Member
***
Offline Offline

Posts: 130


View Profile
« Reply #1 on: March 12, 2008, 12:00:19 PM »

I was discussing this earlier as I do a lot of work in the healthcare field. The problem is that over the years so many vendors/manufacturers of medical devices gotten away with dictating to the clients (hospitals, etc..) what to use and when.

Now the issue of how to use and access the device has become an issue. The security weaknesses of medical devices have always been there (CAT Scan units that only run on NT or 98) Vendors refuse to patch later operating systems as well as they can't guarantee that the patch won't break the device.

These devices are networked now (wired and wireless) opening them up to a plethora of attacks. Vendors convince the users that the product increases productivity, etc... and it gets purchased. Many of then don't support enterprise encryption and access controls and require that WEP or WPA-PSK be used.

Next time you're in a hospital have a look and see how many access points you see or how many devices have a ethernet cable. The IV pump in the room is now networked and wireless.

Here is another device with issues:

http://blogs.zdnet.com/security/?p=896

dean
Logged

<script>alert('%52%54%46%4D')</script>
RoleReversal
Hero Member
*****
Offline Offline

Posts: 508


View Profile WWW
« Reply #2 on: March 12, 2008, 02:43:06 PM »

cheers dean,

as if I wasn't already paranoid enough about hospitals........... Wink
Logged

A little bit of sanity:
http://www.infosanity.co.uk
iSmith
Full Member
***
Offline Offline

Posts: 157


Do or do not. There is no try. - Yoda


View Profile
« Reply #3 on: March 16, 2008, 06:13:21 PM »

they can do it with pacemakers too... fatally
http://www.techradar.com/news/world-of-tech/pacemakers-could-be-hacked-264885
Logged

In my eyes, your operating system is as solid as swiss cheese.
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.7 | SMF © 2006-2007, Simple Machines LLC
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.138 seconds with 22 queries.
 
Sponsors

cwnp_moto__120x90.gif

Polls
How many security events including conferences and training do you attend a year:
 
Support EH-Net


Support EH-Net by
Buying all of your
Amazon items using
the search bar above.

cbtnuggets_logo_125.jpg
Try CBT Nuggets Free!
Recent Forum Topics
Vote For EH-Net

progenic.com
Click here to Vote!

binarica.com
Binarica Logo

Add to Technorati Favorites
technorati fave

 
         
Advertisement

© 2009 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.