Research Uncovers Cyber Security Flaws in Device Software

New research has uncovered numerous software vulnerabilities in medical devices. The new vulnerabilities are found in software called Nucleus and could allow remote code execution, denial of service, and information leaks, according to researchers at Forescout Research Labs. Nucleus is used in safety-critical devices, such as anesthesia machines, patient monitors and others in healthcare.

 

Nucleus was  originally developed by Accelerated Technology in 1993, then acquired by Mentor Graphics in 2002 and finally by Siemens in 2017. Siemens has released patches for all the vulnerabilities, according to the researchers.

Read more