Clear, practical technology insights BSOD Code Lookup · Windows Error Code Lookup · Wi-Fi Troubleshooting · PC Troubleshooting Checklist

Welcome to 2017: Patients Using Pacemakers Should See a Doctor Soon to Be 'Patched'

Explore Welcome to 2017: Patients Using Pacemakers Should See a Doctor Soon, with key facts, clear context, practical implications, and useful takeaways.

Table of Contents

This article examines Welcome to 2017: Patients Using Pacemakers Should See a Doctor Soon to Be 'Patched'. It presents the main facts, practical implications, and key points in a clearer, easier-to-follow format.

Security updates will fix three security holes MedSec Holdings Ltd. discovered last year. Details of these errors are included in the warning issued by the CERT (US Computer Emergency Response Center) of the Department of Homeland Security. https://ics-cert.us-cert.gov/advisories/ICSMA-17-241-01.

It Is Not Easy to Exploit the Vulnerability

CERT said that these vulnerabilities allow an attacker to interfere with the device and issue commands, change settings or interfere with the device's functionality.

The consequences are terrible but US CERT also said that it is not easy to attack because there is no exploit code for attackers to create their own attack package. Exploitation also needs high skills that few people have. Moreover, the attacker must be fairly close (several centimeters) of the object to be able to communicate using radio waves.

It Is Not Easy to Exploit the Vulnerability illustration Patients using pacemakers are advised to see a doctor.

These holes were discovered by MedSec. In September 2016, Abbott sued MedSEc and security company Muddy Waters, accusing the two companies of deliberately stirring up gaps in pacemakers. These vulnerabilities are detailed here. http://d.muddywatersresearch.com/wp-content/uploads/2016/08/MW_STJ_08252016_2.pdf. and have been fixed in 1/2017.

The current vulnerabilities found by MedSec were fixed at the time, but the US Food and Drug Administration yesterday approved the patch to release it to the public.

Patients Should See a Doctor as Soon as Possible

FDA and Abbott encourage patients to see a doctor if they are using a brand device and if necessary, update it immediately. Abbott gave instructions to both doctors. https://www.sjm.com/~/media/galaxy/hcp/resources-reimbursement/technical-resources/product-adviseries-archive/cybersecurity-pacemaker-firmware/pacemaker- firmware-update-doctor-letter-aug2017-us.pdf? la. and patients. https://www.sjm.com/~/media/galaxy/patients/heart-vascular/arrhythmias/resources-support/cybersecurity/pacemaker-firmware-update-patient-guide-aug2017.pdf? la=en. According to FDA, The following pacemakers are affected:

  • Accent
  • Anthem
  • Accent MRI
  • Accent ST
  • Assurity
  • Allure

Abbott estimates it will take about 3 minutes to install the update. The worst scenarios can be:

  • Reload the previous firmware version due to missing update (0.161%).
  • Lost programmed settings on device (0.023%).
  • Complete loss of device functionality (0.003%).
  • Loss of diagnostic data (not reported).

Abbott, US CERT and FDA said that no attackers have exploited the vulnerabilities that MedSec found. According to FDA data, about 465,000 pacemakers across the United States are affected by these vulnerabilities.

FAQ

What is the main point of Welcome to 2017: Patients Using Pacemakers Should See a Doctor Soon to Be 'Patched'?

Security updates will fix three security holes MedSec Holdings Ltd. Details of these errors are included in the warning issued by the CERT (US Computer Emergency Response Center) of the Department of Homeland Security.

Why is Welcome to 2017: Patients Using Pacemakers Should See a Doctor Soon to Be 'Patched' important?

Welcome to 2017: Patients Using Pacemakers Should See a Doctor Soon to Be 'Patched' matters because it can affect how readers understand, choose, use, or respond to the subject discussed in the article.

What should readers verify about Welcome to 2017: Patients Using Pacemakers Should See a Doctor Soon to Be 'Patched'?

Check the date, product or software version, compatibility, and any current guidance before acting, especially when technology, security, health, or pricing is involved.

Discussion

Reader Comments 0

Sign in with email or Google to join the discussion.