Inogona Kugadziriswa Pacemakers uye Defibrillators Ichaderedzwa Here?

St. Jude neCyber ​​Vulnerability yeMishonga Yezvokurapa

Mukupera kwegore ra2016 uye kutanga kwegore ra2017, nhau dzakasimudza nyaya iyo vanhu vane vavariro dzakaipa vangave vakakwanisa kuvhara mukana wekurapa wemunhu uye inokonzera zvinetso zvakakomba. Kunyanya, zvigadziriswa zviri mubvunzo zvinotengeswa neSt. Jude Medical, Inc., uye zvinosanganisira pacemakers (iyo inobata sinus bradycardia uye mwoyo block ), inogadziriswa inonzi defibrillators (ICDs) (inobata ventricular tachycardia uye ventricular fibrillation ), uye ma CRT (izvo kurapa mwoyo kukanganisa ).

Iyi nhau dzenhau dzingangodaro dzakakonzera kutya pakati pevanhu vane zviyero izvi zvekurapa pasina kuisa nyaya yacho zvakakwana.

Inokonzerwa nemichina yepachiviri panjodzi yekukuvara kwe cyber here? Hungu, nokuti chero chidimbu che digital chinosanganisira kusingabatsiri kutaurirana kunoshandiswa zvisingatauriki, kusanganisira pacemakers, ICDs uye ma CRT. Asi kusvikira ikozvino, kukwidzika kwekuroberwa kwechokwadi kune imwe yeiyi mishonga yakagadzirwa haina kumbobvira yakanyorwa. Uye (tinovonga zvikuru pamusana pekuparidzirwa kwemazuva ano pamusoro pekunyengedza, maviri ezvokurapa uye vezvematongerwe enyika), iyo FDA nevatori vezvigadzirwa zvino vari kushanda zvakaoma kuti vakwanise kutadza kwakadaro.

St. Jude Cardiac Devices uye Hacking

Nyaya yekutanga yakaputsa munaAugust, 2016 apo mukurumbira wavatengesi veCotonon Block akazivisa pachena kuti St. Jude akanga atengesa mazana ezviuru zvezvigadziriswa zvinokonzerwa nemapemaker, zvinokonzerwa nemagadzirirwo emagetsi uye maCRT akange asingakwanisi kuvhara.

Block yakati iyo kambani yekuchengetedzwa kwekambani yaakabatanidzwa nayo (MedSec Holdings, Inc.), yakanga yanyatsoongorora uye yakawana kuti zvigadzirwa zveSt. Jude zvakanga zvisingakanganwiki nekunyengedza (zvakasiyana nemhando dzakasiyana dzezvipatara zvakatengeswa neMedtronic, Boston Scientific, nemamwe makambani).

Kunyanya, zvakanzi Block, masangano eStudio "akashaya kunyange zvidziviriro zvekuchengeteka zvakanyanya," zvakadai semagadzirirwo anoparadza, mashizha, uye anti-debugging zana, yemhando inowanzoshandiswa nemamwe emabhizimisi.

Zvinonzi kushungurudzika kwakabatana nechokure, kusina foni kutarisa zvose izvi zvigadziri zvakavakira. Izvi zvisingabviri kutarisa zvirongwa zvakagadzirirwa kuti zviongorore zvinetso zvinotanga kubuda zvisati zvava kukwanisa kukuvadza, uye kurukura zvinetso izvi pakarepo kune chiremba. Izvi zvisiri kure, izvo zvino zvakashandiswa nevose vanogadzirisa zvigadzirwa, zvakanyorwa kuti zvivandudze zvakanyanya kuchengetedzwa kwevarwere vane zvinhu izvi. St. Jude's remote monitoring system inonzi "Merlin.net."

Zvikwangwani zveBlock zvakanga zvakashamisa uye zvakakonzera kudonha nokukurumidza muSt. Jude's stock price-iyo ndiyo chaiyo Block yakataurwa chinangwa. Nhoroondo, asati ataura zvaaipomerwa pamusoro peSt. Jude, Block's (Muddy Waters, LLC), akanga atora nzvimbo huru pfupi muSt. Jude. Izvi zvaireva kuti kambani yaBlock yakanga ichiita mamiriyoni emadhora kana nzvimbo yaSt. Jude yakawira zvikuru, uye yakaramba yakadzika zvakakwana kuti iongorore kubvumirana pakutsvaga neAbbott Labs.

Pashure pokurwiswa kweBlock zvakanyanya, St Jude akabva adzingwa nemashoko ekudhinda akasimbiswa kuti mabhii aBlock "haana kunyengera." St. Jude akatsiura Muddy Waters, LLC nekuda kwekuparidzira mashoko enhema kuitira kuti ashandise St. Jude's nhamba dzematokari. Zvichakadaro, vaongorori vakazvimirira vakatarisa mubvunzo wekutsvaga muSt. Judha ndokuuya kune zvakasiyana. Rimwe boka rakatsigira kuti zvigadzirwa zveSt. rimwe boka rakagumisa kuti rakanga risipo. Nyaya yose yakadonha mumakumbo eDFA, iyo yakatanga kushanda nesimba, uye zvishoma zvakanzwika panyaya iyi kwemwedzi inoverengeka.

Mukati iyoyo nguva yeSt. Jude's stock yakagamuchira zvakawanda zvekurashikirwa kwayo, uye pakupera kwegore ra2016, kuwanikwa kwaAbbott kwakagumiswa kubudirira.

Zvadaro, munaJanuary, 2017, zvinhu zviviri zvakaitika panguva imwe chete. Chokutanga, FDA yakabudisa chirevo chinoratidza kuti pakanga pane zvinetso zvekuchengetedzwa kwehutachiona nemichina yekurapa yeSt. Judha, uye kuti izvi zvinotambudza zvinogona kubvumira kushungurudzwa kwekviringi uye kushandiswa kunogona kukuvadza varwere. Zvisinei, FDA yakaratidza kuti hapana humwe uchapupu hwave huchiwanika kuti kunyorera kwaive kuchiitika kune mumwe munhu.

Chechipiri, St. Jude yakabudisa cybersecurity software patch yakagadzirirwa kuderedza kuve kwekukanganiswa mune zvigadzirwa zvadzo. Iyo patch software yakagadzirirwa kuzvisimudza pachayo pakarepo uye pasina wire, kutsika kwaSt. Jude Merlin.net. IA FDA yakarudzira kuti varwere vane mafaira aya vanoramba vachishandisa St Jude's wireless system system, sezvo "hutano hunobatsira kune varwere kubva mukushandiswa kwechigadzirwa zvinopfuura zvinokonzerwa nekuchengetedzwa kwenyika."

Ndezvipi Izvi Zvichitirega?

Izvo zvataurwa zvinonyatsorondedzera zvisizvo sezvatinoziva kuvanhu. Semumwe munhu aibatanidzwa zvikuru nekuvandudzirwa kwekutanga kwekugadziriswa kwekushandiswa kwekuchengetedza (kwete St. Jude's), ndinoshandura izvi zvose nenzira inotevera: Zvinoratidzika kuti pane zvechokwadi kuvharwa kwekuchengeteka muSt. Jude kure kurega nzira , uye izvi zvisingatauriki zvinoita sokuti zvakanga zvisingabviri kune imwe shanduro huru. (Saka, kutenda kwaSt. Judha pakutanga kwakangove kwakanyanyisa.)

Uyezve, zvinoratidzika kuti St. Jude akakurumidza kugadzirisa kusatambura uku, kushanda pamwe chete neDFA, uye kuti matanho aya akazopedzisira agutsikana neDFA. Kutaura zvazviri, kutonga kuburikidza nekushandira pamwe kweDAA uye kuti kushaya simba kwakanyatsotarisirwa nenzira yepatch software, dambudziko reSt. Jude rinoratidzika kunge risina kuoma sezvakataurwa naVaBlock muna 2016. ( Saka, mashoko aMnu Block's anotaridzika akange achiwedzererwa). Uyezve, zvigadziriswa zvakaitwa vasati vakuvadzwa.

Zvichida VaBlock vanopesana nehuwandu hwekufarira (uko kuendesa pasi muSt. Jude's stock price kwakasimudzira kuti awane mari yakawanda), zvingadaro zvakamuita kuti atarisire zvingangoita nengozi dzepfungwa dzinogona kuitika, asi uyu mubvunzo wematare emitemo kuti aone .

Nokuti iko zvino zvinoratidzika sezviri, pamwe nekugadzirisa patch software yakashandiswa, vanhu vane St. Jude madivayiri havana chikonzero chakanaka chekunyanya kunetseka pamusoro pokurwiswa kwekunyengedza.

Sei Chimiro Chekushandiswa Kwemakemikari Chichivhiringidzika kuCyber ​​Attack?

Panguva ino vazhinji vedu tinoziva kuti chero chigadzirwa chemagetsi chatinoshandisa muupenyu hwedu chinosanganisira kutaurirana kusingabatsiri kunenge kusinganzwisisiki nekutengesa cyberattack. Izvo zvinosanganisira chipangamupinyi chekurapa chinoshandiswa, iyo yose inofanira kutaurirana isina kutengesa nenyika yekunze (kureva, nyika kunze kwemuviri).

Izvo zvingaitika kuti vanhu kana mapoka akazvipira pamusoro pezvakaipa vangangodaro vachinetseka mune zvigadzirwa zvemishonga, mumakore mashomanana apfuura, vanouya sevanoita sehuwandu hwekutyisidzira kwechokwadi. Muchiedza ichi, kuparidzirwa kwakapoteredza udzvinyiriri hweSt. Judha kunogona kunge kwakagadzirisa. Zviri pachena kuti mhizha yezvigadzirwa zvezvokurapa uye FDA ikozvino yakakomba zvikuru pamusoro pekutyisidzira uku, uye ikozvino inoshanda nesimba rakakura kuti riite nayo.

Chii icho FDA Inoita Nechinetso Ichi?

Izvo zvinotarisirwa neCDA zvange zvichangobva kutarisa panyaya iyi, zvichida zvikuru pamusana pekukakavara pamusoro pezvigadzirwa zveSt. Jude. MunaDisemba, 2016, FDA yakabudisa peji 30 ye "hutungamiri" dhiyabhorosi kune vanogadzira zvigadzirwa zvezvokurapa, kuisa mitsva yemitemo yekutarisana ne-cyber-vulnerability muzvigadzirwa zvemishonga zviri kutengeswa. (Mitemo yakafanana yemishonga yezvechiremba ichiri pasi pesangano yakabudiswa muna 2014.) Mitemo mitsva inorondedzera kuti vanogadziri vanofanira kufamba sei pakuratidza nekugadzirisa kuchengetedzwa kwekuchengetedzwa kwenyika mune zvigadzirwa zvekutengesa, uye nzira yekugadzira hurongwa hwekuona uye kurondedzera matambudziko matsva ekuchengetedza.

The Bottom Line

Tichifunga nezvekukuvadza kwepyber inobatanidza nemhando dzese dzisingabatsiri dzekukurukurirana, imwe yero yekukuvara kwekuchengetedza haikwanisiki nemichina yekurapa inoshandiswa. Asi zvakakosha kuziva kuti kudzivirirwa kunogona kuvakwa muzvigadzirwa izvi kugadzira kubvongodza kungoita zvishoma, uye kunyange Bwana Block anobvuma kuti kune mamwe makambani izvi zvakaitika. Kana Judhasi aimbove achinetseka pamusoro pechinhu ichi, kambani inoratidzika kunge yakaporeswa nayo kuburikidza nekushamiswa kwevakaipa kwakagamuchirwa muna 2016, iyo kwekanguva yakatyisidzira bhizinesi ravo. Pakati pezvimwe zvinhu, St. Jude akatumira hurumende yakasununguka yeCyber ​​Security Medical Advisory Board kuti itarisire kuedza kwayo kuenderera mberi. Mamwe makambani emichina ekurapa angangodaro aitevera. Nokudaro, zvose FDA nevatsigiri vezvipatara zvinogadzirisa nyaya yacho nekuwedzera simba.

Vanhu vakaisa mapemaker, ICDs kana ma CRT maikirwe anofanirwa kunyatsoteerera nyaya yekutengesa kweyeri, sezvo isu tinogona kunzwa zvakawanda pamusoro payo sekufamba kwenguva. Asi iye zvino, zvishoma, ngozi inoratidzika seyodiki kwazvo, uye inonyatsoyerera nezvikwereti zvekuchengetedzwa kwekugadzirisa.

> Sources:

> FDA. Cybersecurity Vulnerability Inozivikanwa muSt. Jude Medical's Implantable Cardiac Devices uye Merlin @ home Transmitter: FDA Safety Communication. January 9, 2017.

> Muddy Waters. MW Nyaya ye STJ / ABT Kubvumirana neCyber ​​Vulnerability. Dhinda rekubudiswa musi waJanuary 9, 2017.

> St Jude Medical. St Jude Medical anozivisa Cybersecurity Updates press release. January 9, 2017.