Conficker worm found in hospital equipment

(From the SAN JOSE MERCURY NEWS - May 1, 2009) – A computer worm that has alarmed security experts around the world has crawled into hundreds of medical devices at dozens of hospitals in the United States and other countries, according to technologists monitoring the threat.

The worm, known as “Conficker,” has not harmed any patients, they say, but it poses a potential threat to hospital operations.

“A few weeks ago, we discovered medical devices, MRI machines, infected with Conficker,” said Marcus Sachs, director of the Internet Storm Center, an early-warning system for Internet threats .

Around March 24, researchers monitoring the worm noticed that an imaging machine was reaching out over the Internet to get instructions — presumably from the programmers who created Conficker.

The researchers discovered that more than 300 similar devices at hospitals around the world had been compromised. The manufacturer of the devices told them none of the machines were supposed to be connected to the Internet — and yet they were.

Normally, the solution would be simply to install a patch, which Microsoft released in October. But the device manufacturer said rules from the U.S. Food and Drug Administration required that a 90-day notice before the machines could be patched.

“For 90 days these infected machines could easily be used in an attack, including, for example, the leaking of patient information,” said Rodney Joffe, a senior vice president at NeuStar, a communications company that belongs to an industry working group created to deal with the worm.

Leave a Reply

Recent News

  • RIM Case Study on Odyssey Healthcare

    March 30, 2010 — RIM has released a case study on Odyssey Healthcare’s implementation of Media Sourcery’s AppMobilizer. Titled “BlackBerry Solution Helps Hospice Provider Gather Patient Information at Point of Care“, the case study can be found on RIM’s web site, or downloaded via the form at the end of this post.
    From the case study:
    Challenge
    Odyssey [...]

  • Eating our own secure dog food

    Media Sourcery CEO Larry Ketchersid writes on Infosec Island how the company uses its own products in working with its partners and customers:
    Similar to security assessments, network architecture designs and other projects, a development project, such as this one involves the exchange of confidential data, including in this case, intellectual property designs, requirements documents, test [...]

  • Mobile Monday Austin

    AUSTIN, TX – December 7, 2009 – Media Sourcery was one of several
    companies invited to demo and present our mobile solution at the Austin Chapter of Mobile Monday. The agenda (which can be found here) reviewed incubators and funding sources, and the turnout was excellent. Thanks to C. Enrique Ortiz for inviting us and [...]

  • WireHead Security, Media Sourcery Partner to Introduce PKI Encryption Service to Infosec IslandPKI Community

    New IslandPKITM Premium Web-based Service Offers Easy, Low-Cost Sharing of Encrypted Confidential Records or Documents over the Web.
    RALEIGH, NC – September 21, 2009 – WireHead SecurityTM and Media Sourcery today announced a strategic partnership under which WireHead is delivering a first-of-a-kind security service to its new Infosec IslandTM community for IT and information security professionals. [...]

  • AT&T Certifed Solution

    (August 27, 2009) – Media Sourcery’s AppMobilizer solution is now an AT&T Certified Solution for RIM Blackberry’s and Nokia’s E71x.
    You can find AppMobilizer here in the AT&T Certified Solutions catalog.
    Read more about AppMobilizer here.

  • Odyssey Healthcare to present mobile healthcare solutions at RIM’s WES conference

    (May 4, 2009) – Odyssey Healthcare representatives with be participating in panels and presentations at RIM’s WES conference in Orlando, Florida May 5-7, 2009. Odyssey will discuss their mobile solutions, including AppMobilizer by Media Sourcery, used for mobile visit notes, symptom assessments and other functions.
    Odyssey is one of the largest hospice providers in the country, [...]

  • AT&T Fast Pitch semi-finalist; presenting at CTIA

    (April 2, 2009 – Las Vegas, Nevada) – Media Sourcery was selected a finalist in the Enterprise division of AT&T’s Fast Pitch program. Semi-finalists present at CTIA in Las Vegas to a roundtable of AT&T executives.

  • AppMobilizer selected “Judge’s Choice” in Nokia’s Calling All Innovators Contest

    (February 5, 2009 – Barcelona, Spain) – AppMobilizer, Media Sourcery’s solution to help Enterprises mobilize their applications securely and quickly, was awarded a “Judge’s Choice” award in Nokia’s Calling All Innovators competition. These awards were presented at this year’s Mobile World Congress in Barcelona, Spain.

© 2010 Media Sourcery, Inc. All rights reserved. Powered by Wordpress. Designed by Woo Themes