Blogs -IoT Medical Devices: Our Scariest Security Threat Yet

IoT Medical Devices: Our Scariest Security Threat Yet


February 01, 2018

author

Beth Kindig

Lead Tech Analyst

IoT medical devices may be our scariest security threat yet. Implanted devices such as pacemakers draw big headlines for security threats. However, there are 36,000 other health-care related devices in the United States that are discoverable on the connected device search engine Shodan – which doesn’t even take into account the global level of unprotected devices (source: Wired).

In fact, U.S. hospitals have an average of ten to 15 connected IoT medical devices per bed with some hospitals registering 5,000 beds (or 50,000 connected devices). Therefore, the magnitude of the risks associated with these medical IoT devices is a gripping proposition.

Most hacks will not be a life or death situation, although a few exposed vulnerabilities could be potentially fatal, such as with Johnson & Johnson’s insulin pumps, which could potentially administer a fatal dose of insulin, or the Animas OneTouch Ping with a vulnerable wireless controller. The most common hack is for medical records, which can be sold on a Dark Web aftermarket with a value of $500 per Medicare or Medicaid record [2] . As The Hill reports, tens of millions of electronic health records have been compromised over the last few years, whereas there has not been a single implant device death or documented patient harm, according to Zach Rothstein, associated vice president of the Advanced Medical Technology Association. In 2015 over 113 million personal health records were compromised, up 9x from 2014, according to the Department of Health and Human Services (DHS).

While medical record theft and device hacks are well documented, there are many reasons hackers target the vast array of medical devices on the market. Ransomware is the practice of taking over a mobile app until a ransom is paid. A similar exploit can be performed on hospitals by entering a weak point, such as unsecured wireless connections, to access the system and take it over for a ransom. For instance, the Los Angeles Hollywood Medical Center had to pay hackers $17,000 to regain control of critical computer systems [3] . A similar attack also occurred in Mount Pleasant, Texas, where a hospital had its core electronic medical system knocked offline until a ransom was paid. According to those in the security industry, while ransomware attacks are prevalent, they are rarely made public for a variety of reasons.

Other reasons hacks that can occur include changing medical records for allergies or diagnoses. There is at least one case where medical devices were hacked to disseminate information and change stock prices, such as with Muddy Waters, a short selling firm that hired a boutique cybersecurity firm to conduct test attacks on a St. Jude’s pacemaker from 10 feet (3 meters) away, but up to 100 feet with an antenna and software defined radio, according to Reuters.

Medical devices extend beyond healthcare facilities and now overlap with mobile apps, as well. Last year, the Medicines and Healthcare products Regulatory Agency (MHRA) has issued updated guidance today to help identify health apps that are medical devices – and how to secure these mobile vulnerabilities. The apps that are of concern gather data from either the person or a diagnostic device, collecting information such as heartbeat or blood glucose levels, and then interpret the data to make a diagnosis, or to recommend treatment4 . As the MRHA director of medical devices says, “We live in an increasingly digital world, both healthcare professionals, patients and the public use software and stand-alone apps to aid diagnosis and monitor health.” There are also many apps connected to medical devices, providing another entry point for hackers.

“Mobile apps are unleashing amazing creativity,” Bakul Patel said from the FDA’s Center for Devices and Radiological Health. “At the same time, we have set risk-based priorities and are focusing FDA’s oversight on mobile apps that are devices for which safety and effectiveness are critical.”

This article first appeared on Intertrust.com

To learn more on how to protect IoT Medical Devices and how Intertrust drives advancements in healthcare with secure data collaborations, data privacy and security, contact sales@whitecryption.com 

SOURCES:

[1] WIRED, Medical Devices Next Security Nightmare

[2] NextGov, This Is the Real Threat Posed by Hacked Medical Devices at VA

[3] NYTimes,  Los Angeles Hackers Pay $17,000 After Attack

head bg

More To Explore

Newsletter

A Fox Business live interview features Beth Kindig, Lead Tech Analyst at I/O Fund, discussing NVIDIA.

AI Stocks & Nvidia: I/O Fund’s 2025 Tech Media Highlights

As we close out a defining year for tech, we’re proud to share a few media moments where our theses met the mainstream. We are grateful that our readers trust us to cut through the noise - and we want

December 23, 2025
Meta logo glowing on a futuristic microchip with neon circuitry and rising stock chart, symbolizing AI growth and monetization.

The AI Revenue Leader Nobody Is Talking About—Second Only to Nvidia Stock

Meta’s stock sits at the center of the AI spending debate, as Big Tech continues to shock markets with outsized AI-driven capital expenditures. What is being overlooked is that Meta’s stock is already

December 18, 2025
Nvidia, Broadcom (AVGO), and AMD AI Accelerator Chips Comparison

Broadcom Stock: The Silent Winner in the AI Monetization Supercycle

The AI accelerator market will inevitably widen beyond Nvidia’s GPUs - the keyword is widen. More players will sell more AI systems as the market expands, and that growth supports both the clear leade

December 11, 2025
A large digital wave with Nvidia’s green accents, made of binary code and GPU textures, rising with an upward market graph.

Nvidia Stock and the AI Monetization Supercycle No One Is Pricing In

Two weeks ago, Nvidia blew the doors off with an earnings report that defies the company’s mega-cap scale. The long-awaited Blackwell and Blackwell Ultra architectures are shipping in volume, leading

December 04, 2025
Digital image of a glowing Bitcoin coin centered over a candlestick chart, representing price volatility and technical analysis in the crypto market.

I/O Fund Called the Bitcoin Selloff: What Liquidity & DXY Data Predict Next

In August, the I/O Fund warned that Bitcoin was entering a high-risk phase as global liquidity stalled, and sentiment patterns flashed caution. Since then, Bitcoin has fallen more than -35%. In this a

November 28, 2025
Illustration of a towering Nvidia GPU dominating over smaller Apple, Microsoft, and Google chip blocks, with stock market charts in the background symbolizing Nvidia’s market cap lead.

Why Nvidia Stock Could Reach a $20 Trillion Market Cap by 2030

The headline that Nvidia could reach a $20 trillion market cap by 2030 will trigger plenty of emotion — it sounds fantastical, full of hype, or like a prediction made far too early in the AI cycle. Ye

November 19, 2025
Visual metaphor of stacks of glowing microchips on a circuit board labeled "$405B Bet," symbolizing Big Tech's massive capital expenditure in AI infrastructure.

Big Tech’s $405B Bet: Why AI Stocks Are Set Up for a Strong 2026 

AI accelerators such as GPUs and custom silicon need no introduction. Compute has led the AI boom; a trend so powerful, it is displacing the FAANGs of the last decade with Nvidia firmly the world’s mo

November 13, 2025
S&P 500 market forecast showing potential strength into December and volatility in early 2026, based on technical analysis and market cycle trends.

Market Cycles, Not Headlines: What History Says About the 2025 Rally and What Comes Next 

Despite how it may seem, modern-day narratives rarely drive market swings. Tariffs, political headlines, niche trends like rare earth materials, or speculation about which company OpenAI partners with

November 06, 2025
AI circuit board glowing over cracked earth, symbolizing technology masking a weak economy.

Decoding the S&P 500: When Human Sentiment Meets Artificial Intelligence

Less than one-fifth of the U.S. economy is expanding, yet this small segment is growing at such a blistering pace—driven by AI-related spending—that it continues to hold up the rest of the economy. We

October 31, 2025
TSMC semiconductor fabrication plant showcasing advanced chip manufacturing technology.

TSM Stock and the AI Bubble: 40%+ AI Accelerator Growth Fuels the Valuation Debate

Taiwan Semiconductor (NYSE: TSM) recently announced fiscal Q3 earnings, stating its longer-term AI revenue outlook is stronger than anticipated. The company reported record Q3 revenue of $33.1 billion

October 23, 2025
newsletter

Sign up for Analysis on
the Best Tech Stocks


Copyright © 2010 - 2025