Do No Harm. Matthew Webster

Do No Harm - Matthew Webster


Скачать книгу
can gain access to the information. Lack of encryption means that the system is vulnerable to a man-in-the-middle attack. This is someone who hasn't authenticated to the device, but may be inline from the communication. Essentially the information is in plain text and can be pulled. If it isn't clear, poor interface security can lead to data breaches, stolen passwords, etc.

      It is important to keep in mind that not all of these items will be applicable to connected medical devices, but given the roots of medical devices within IoT, many of these items are quite common. In 2018, the FDA put out new regulation regarding the security of IoMT. While that was a large step forward, hospitals can hold onto devices for many years—often longer than they were intended to. This means that many of the previously approved devices may have one or more of these problems.

      While this story is not directly related to IoMT, it is indirectly related and serves as a strong cautionary tale. The security of these random internet-connected devices is very important. Lack of security can cause severe problems. The reality is governments and organized crime took note of what was going on. IoT was hitting center stage, and variants of Mirai were created after the fact—just looking for vulnerable devices to compromise.

      It may seem that 2017 was not that long ago, but from a technology perspective it was. Since then, the FDA has enacted new rules to help protect medical devices. Understanding that challenge, though, requires an understanding of the technology—the subject of the next section.


Скачать книгу