Reply to post: Re: Unrestricted access during remote firmware update?

Hacking these medical pumps is as easy as copying a booby-trapped file over the network

John Brown (no body) Silver badge

Re: Unrestricted access during remote firmware update?

Well, it seems at least some of this kit is at least 13 years old and bearing in mind how long medical approval and certification takes (and costs, not to mention possible re-certification for patched systems), it was probably designed and developed in a much more naive world. In the modern world, they should still be pretty safe because the suggested mitigations are that the medical establishment should already be a pretty secure network with critical stuff vlanned off with even more internal security like firewalls.

Bit then we don't live in a perfect world where hospitals have unlimited network security budgets.

