Categories: NewsSecurity

WannaCry Ransomware Starts Infecting Medical Devices Running Windows Embedded

It looks like there is another major development regarding the WannaCry ransomware attack. Instead of going after personal and enterprise computers, the malicious software is now infecting medical devices as well. That is a very troublesome development, as radiology equipment infected with ransomware becomes entirely unusable. It is unclear how many medical devices are affected by WannaCry at this point.

Medical Devices Are Not Safe From WannaCry

It is somewhat disconcerting to learn medical devices are now vulnerable to WannaCry ransomware attacks as well. A picture of an infected radiology machine has surfaced on the Forbes website earlier this week. It is unclear if this is just one particular infection, or if multiple medical devices are at risk of dealing with a malicious software attack. If it is the latter, things are not looking good by any means.

The main reason why this particular device was successfully infected by WannaCry is because it runs the Windows Embedded operating system. Up until this point, no one considered that particular operating system to be vulnerable to SMB exploits as well. Unfortunately, it appears that is the case. Microsoft may issue a security update to fix this problem, although it is doubtful these machines will install it automatically.

Quite a few medical equipment vendors are growing concerned regarding this new development. It is unclear which particular hospital was infected by WannaCry and whether or not other institutions are at risk as well. The machine in question is a Bayer Medrad,  and the manufacturer confirmed two reports regarding WannaCry infections have been received so far. Two reports may not sound like a lot, but not every hospital reports such incidents immediately either.

Related Post

It is believed Siemens medical devices may be susceptible to WannaCry ransomware attacks as well. This information was shared by the Health Information Trust Alliance, and later on confirmed by an official source. It appears Siemens Healthineers products run a version of the Windows operating system still suffering from this SMB exploit. It is unclear how many Siemens medical devices may have been affected at this time, though.

Unfortunately, the problems don’t end there, as Smiths Medical, Medtronics, and Johnson  & Johnson all issued security alerts as well. While none of these machines have been officially infected with WannaCry ransomware at this time, it is still too early to gauge the full effect of what this malicious software is capable of. More specifically, the bigger question is how this software can be removed from medical devices without having to pay the ransom demand. That seems virtually impossible right now.

It is not the first time medical institutions have to deal with ransomware attacks. In most cases, these attacks are directed at staffers’ computers, rather than the medical equipment itself. WannaCry is a clear example of how things can go from bad to worse in a heartbeat, especially in environments where a lack of cybersecurity will create more problems in the future. It is troubling the medical sector is still unprepared for these attacks, that much is certain.

If you liked this article, follow us on Twitter @themerklenews and make sure to subscribe to our newsletter to receive the latest bitcoin, cryptocurrency, and technology news.

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Bitwise Launches Its First Tokenized Fund With $259M in Assets and 4% Annual Yield

Bitwise Asset Management has just made its first move into tokenized funds, and it comes…

21 hours ago

Binance Launches US Stocks and ETFs Trading for Non-US Users With Zero Commission

Binance just made a move that blurs the line between crypto exchange and traditional brokerage…

22 hours ago

NEAR Protocol Ships Confidential Payments, Crosses $19B in Intents Volume, and Partners With Bermuda Government

NEAR Protocol has had a month that most blockchain projects would stretch across an entire…

2 days ago

Chainlink Records 7 New Integrations Across 6 Services and 4 Chains

Something is becoming increasingly clear about Chainlink, the integrations are not slowing down. The protocol…

2 days ago

Circle Freezes $12.6 Million in Zama’s Confidential USDC Contract on Ethereum

Blockchain investigator ZachXBT has flagged a major stablecoin freeze that is sending shockwaves through the…

3 days ago

Exponent Finance Launches V2 To Expand Institutional Yield Markets On Solana

From a primarily interest rate swap niche product, Exponent has developed into an onchain capital…

4 days ago