Illumina Cybersecurity Vulnerability: FDA
FDA says a cybersecurity vulnerability is affecting software in several Illumina next-generation sequencing instruments. An agency statement says the Illumina devices may be specified for either clinical diagnostic use in sequencing a person’s DNA or testing for various genetic conditions, or for research use only.
The notice says the vulnerability affects the local run manager software and an unauthorized user could exploit the vulnerability by:
- taking control of the instrument remotely;
- operating the system to alter settings, configurations, software, or data on the instrument or a customer’s network; or
- affecting patient test results in the instruments intended for clinical diagnosis, including causing the instruments to provide no results or incorrect results, altered results, or a potential data breach.
FDA says Illumina has developed a software patch against the exploitation of the vulnerability and is working to provide a permanent software fix for current and future instruments. “FDA wants laboratory personnel and healthcare providers to be aware of the required actions to mitigate these cybersecurity risks,” the notice says.