CISA, FDA Issue Warning Over Backdoor in China’s Contec Patient Monitors

5Mind. The Meme Platform
The Epoch Times Header

FDA recommended hospitals stop using the devices or disconnect them from the internet.

A patient monitor made by Chinese manufacturer Contec contains a backdoor that could allow an attacker to access patient data and remotely manipulate the devices, U.S. authorities said on Friday.

The Contec patient monitor CMS8000 is a device used to monitor human vital signs in hospitals and and clinics in the European Union and the United States.

The Food and Drug Administration (FDA) issued a statement, recommending hospitals and caregivers check Contec CMS8000 monitors, disconnect the device from the internet, or stop using it if the device relies on remote monitoring features.

The recommendation also applies to the same devices relabelled and sold as Epsimed MN-120 patient monitors.

“Once the patient monitor is connected to the internet, it begins gathering patient data, including personally identifiable information (PII) and protected health information (PHI), and exfiltrating (withdrawing) the data outside of the health care delivery environment,” the FDA said.

The device also contains a backdoor that can allow unauthorized persons to cause the device to crash or malfunction, or to corrupt data on the device, the FDA said.

The regulator said it’s not currently aware of any cybersecurity incidents, injuries, or deaths related to the vulnerabilities found on the device. It asked users to report any problems they find.

The vulnerabilities were identified by a research team from the Cybersecurity & Infrastructure Security Agency (CISA), which analyzed three versions of firmware for the Contec CMS8000 patient monitor.

The team found a backdoor that connects the devices to a hard-coded IP address, “allowing the device to download and execute unverified remote files,” CISA said in a report detailing the team’s findings.

The agency didn’t disclose the location of the IP address, stating only that it belongs to a “third-party university.”

The research team determined that it is “very unlikely” the backdoor serves as an alternative update mechanism due to the code’s “highly unusual characteristics,” which differ from those of other update mechanisms.

CISA said when the backdoor function on the device is executed, “files on the device are forcibly overwritten” without the knowledge of the end user, so hospitals won’t know what software is running on the device.

By Lily Zhou

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

WHO Inexplicably, Immediately Releases All Passengers on Hantavirus Cruise Ship Without Quarantine

WHO boss announces the instant dispersal of all the cruise passengers back to their home countries — no quarantine period required.

Scandal in the age of exposure

The shame of Patriots head coach Mike Vrabel and NFL reporter Dianna Russini underscores how scandal has always been a bestseller.

Japan to Be Culturally Enriched With 300,000 Bangladeshi Migrants

Bangladesh government has intensified preparations to send huge numbers of skilled manpower to Japan under the Specified Skilled Worker (SSW) category.

Bullets and Ballrooms

At the WHPA Correspondents Dinner, there were bullets, not pointed words, sarcastic comments, overcooked chicken, or bad jokes being dodged.

Anti-MAHA Senator Bill Cassidy in Existential Primary Fight After Squashing Trump Surgeon General Nominee

President Trump pulled the plug on his nominee for surgeon general, but he’s using the setback to help secure a win he covets: the defeat Sen. Bill Cassidy.

America’s 250th: Here’s Where Celebrations Are Taking Place

Celebrations across the United States are expected in the coming months as Americans mark the 250th anniversary of the nation’s founding.

Justice Department Sues New Mexico, Albuquerque for Obstructing Federal Immigration Enforcement

The DOJ sued New Mexico and Albuquerque, arguing recent state and city immigration laws unlawfully interfere with federal enforcement authority.

WHO Says Hantavirus Risk Is Low as Passengers Prepare to Leave Ship

WHO said that hantavirus “is not another COVID” situation and suggested that the public health risk will remain low, as people prepare to exit the cruise ship.

Ford Targets Mass-Market EVs in Direct Challenge to China

Ford, the company that brought the automobile to the masses by making it affordable, appears to be seeking to replicate that success by making low-priced electric vehicles, in a head-to-head competition against Chinese electric vehicle (EV) makers.

What to Know About Trump’s Presidential Fitness Test Award Revival

In the coming academic year, old-fashioned calisthenics, timed runs, and the spirit of competition could return to many public schools.

Rubio Meets With Pope Leo at the Vatican

Secreetary of State Marco Rubio met with Pope Leo XIV at the Vatican, amid a war of words between the head of the Catholic Church and President Trump.

CBP Says It Will Start Issuing First Refunds of Trump Tariffs on May 12

CBP said the first batch of refunds from tariffs imposed by President Trump, which the Supreme Court struck down in February, would begin on May 12.

Trump Says US Economy Is Booming Despite Iran War

President Trump touted his economic policies, from tax cuts and tariffs to deregulation, saying the US is thriving despite conflict in the Middle East.
spot_img

Related Articles

Popular Categories

MAGA Business Central