* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Monday, June 9, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    Cisco Partners with Monumental Sports & Entertainment to Power New D.C. Arena – Cisco Newsroom

    Cisco Teams Up with Monumental Sports & Entertainment to Revolutionize the New D.C. Arena Experience

    Middle Eastern Entertainment Headlines at 5:49 a.m. GMT – Yahoo

    Exciting Updates from the Middle Eastern Entertainment Scene!

    Ceramic Dalmatian Entertainment is WLAF’s Business of the Week – WLAF

    Spotlight on Success: Ceramic Dalmatian Entertainment Shines as This Week’s Featured Business!

    Brass Lion Entertainment unveils co-op action RPG Wu-Tang: Rise of the Deceiver – VentureBeat

    Unleash Your Inner Warrior: Discover the Co-Op Action RPG Wu-Tang: Rise of the Deceiver!

    Entertainment lineup released for 2025 Mississippi State Fair – WAPT

    Exciting Entertainment Lineup Unveiled for the 2025 Mississippi State Fair!

    After Denzel Washington Said He Would Be In Black Panther 3, Ryan Coogler Explained Why He’s ‘Fine’ With That Information Being Revealed So Early – Yahoo

    Ryan Coogler Shares Why He’s Cool with Denzel Washington’s Black Panther 3 Reveal!

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Reeves to Announce £86 Billion for Science and Technology in Spending Review – Bloomberg

    Reeves Set to Unveil Groundbreaking £86 Billion Investment in Science and Technology!

    Innovation at Scale: How P&G Transforms Business Through Technology – Procter & Gamble

    Revolutionizing Business: P&G’s Bold Journey into Technological Innovation

    Drag racer survives frightening airborne crash at World Wide Technology Raceway – FOX 2

    Drag racer survives frightening airborne crash at World Wide Technology Raceway – FOX 2

    Apple Watch and the future of wearable technology in healthcare – MSN

    Revolutionizing Healthcare: The Future of Wearable Technology with Apple Watch

    ECS Professor Pankaj K. Jha Receives NSF Grant to Develop Quantum Technology – Syracuse University News

    Unlocking the Future: ECS Professor Pankaj K. Jha Secures NSF Grant for Groundbreaking Quantum Technology Development

    Fire Tech Brief: 5 Fire Apparatus Technology Upgrades – firehouse.com

    Revving Up Safety: 5 Innovative Upgrades for Fire Apparatus Technology

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    Cisco Partners with Monumental Sports & Entertainment to Power New D.C. Arena – Cisco Newsroom

    Cisco Teams Up with Monumental Sports & Entertainment to Revolutionize the New D.C. Arena Experience

    Middle Eastern Entertainment Headlines at 5:49 a.m. GMT – Yahoo

    Exciting Updates from the Middle Eastern Entertainment Scene!

    Ceramic Dalmatian Entertainment is WLAF’s Business of the Week – WLAF

    Spotlight on Success: Ceramic Dalmatian Entertainment Shines as This Week’s Featured Business!

    Brass Lion Entertainment unveils co-op action RPG Wu-Tang: Rise of the Deceiver – VentureBeat

    Unleash Your Inner Warrior: Discover the Co-Op Action RPG Wu-Tang: Rise of the Deceiver!

    Entertainment lineup released for 2025 Mississippi State Fair – WAPT

    Exciting Entertainment Lineup Unveiled for the 2025 Mississippi State Fair!

    After Denzel Washington Said He Would Be In Black Panther 3, Ryan Coogler Explained Why He’s ‘Fine’ With That Information Being Revealed So Early – Yahoo

    Ryan Coogler Shares Why He’s Cool with Denzel Washington’s Black Panther 3 Reveal!

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Reeves to Announce £86 Billion for Science and Technology in Spending Review – Bloomberg

    Reeves Set to Unveil Groundbreaking £86 Billion Investment in Science and Technology!

    Innovation at Scale: How P&G Transforms Business Through Technology – Procter & Gamble

    Revolutionizing Business: P&G’s Bold Journey into Technological Innovation

    Drag racer survives frightening airborne crash at World Wide Technology Raceway – FOX 2

    Drag racer survives frightening airborne crash at World Wide Technology Raceway – FOX 2

    Apple Watch and the future of wearable technology in healthcare – MSN

    Revolutionizing Healthcare: The Future of Wearable Technology with Apple Watch

    ECS Professor Pankaj K. Jha Receives NSF Grant to Develop Quantum Technology – Syracuse University News

    Unlocking the Future: ECS Professor Pankaj K. Jha Secures NSF Grant for Groundbreaking Quantum Technology Development

    Fire Tech Brief: 5 Fire Apparatus Technology Upgrades – firehouse.com

    Revving Up Safety: 5 Innovative Upgrades for Fire Apparatus Technology

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Health

CISA issues new PACs security advisory

July 25, 2024
in Health
CISA issues new PACs security advisory
Share on FacebookShare on Twitter

A series of remotely exploitable vulnerabilities are affecting Philips’ Vue Picture Archiving and Communication Systems Versions prior to 12.2.8.410, the Cybersecurity and Infrastructure Security Agency said this past week. They could allow cybercriminals to view or modify data, gain system access, perform code execution, install unauthorized software or otherwise affect data integrity and system availability.

On Tuesday, after examining several of the disclosed vulnerabilities, security researchers from Cyble, which develops artificial-intelligence-enabled threat intelligence tools, said the U.S. and Brazil are the two countries with the most exposure.

WHY IT MATTERS

CISA said in its advisory that TAS Health, part of New Zealnd’s Te Whatu Ora, and a systems administrator from the Dutch firm Verweijen ICT, a cloud services and networking service for small and medium-sized businesses, reported the vulnerabilities.

The threats facing Philips Vue PACS are: 

Out-of-bounds Write.
Deserialization of Untrusted Data.
Uncontrolled Resource Consumption.
Improper Privilege Management.
Use of Default Credentials.
Weak Password Requirements.
Exposure of Sensitive Information to an Unauthorized Actor.

Philips said in a statement on July 18 it had not received “any reports of patient harm, exploitation of these issues or incidents from clinical use that we have been able to associate with these issues.”

Meanwhile, Cyble said in its July 23 report, now that the threat of exploitation is widely known, the healthcare sector is in more danger.

“The healthcare and public health sector is vastly dependent on [PACs] due to their nature of operations within this environment; at the same time, the operations performed via PACs become a lucrative target.”

Specifically, the Philips VUE PACs vulnerabilities, combined with an individual system’s internet exposure, could be quickly leveraged by threat actors for data breaches compromising patients’ privacy, or undermining healthcare institutions and patient safety and care.

The company pointed to the U.S. and Brazil as having the highest number of Internet-enabled systems.

Philips recommended the following mitigations in its security advisories to customers:

For vulnerabilities CVE-2020-36518, CVE-2020-11113, CVE-2020-35728, CVE-2021-20190, CVE-2020-14061, CVE-2020-10673, CVE-2019-12814, CVE-2017-17485, CVE-2023-40223, and CVE-2023-40159, Philips recommends upgrading to the latest Vue PACS version 12.2.8.400* released in August 2023.

For CVE-2021-28165, Philips recommends configuring the Vue PACS environment per D000763414 – Vue_PACS_12_Ports_Protocols_Services_Guide available on Incenter. Philips also recommends upgrading to the Vue PACS version 12.2.8.410* released in October 2023.

For CVE-2023-40704 and CVE-2023-40539, Philips recommends configuring the Vue PACS environment per 8G7607 – Vue PACS User Guide Rev G available on Incenter.

CISA shared this information in its advisory to U.S. healthcare organizations and reminded them to perform proper impact analysis and risk assessment before “deploying defensive measures.”

Philips reached out to Healthcare IT News to add that it collaborates across industries and actively encourages vulnerability discovery and disclosure.  

“The majority of these potential issues were corrected by the release of Vue PACS software version 12.2.8.400 in August 2023 and one issue was addressed by Vue PACS version 12.2.8.410 released in October. Also, Philips reported this vulnerability via our publicly accessible, voluntary  Coordinated Vulnerability Disclosure program. Philips CVD program, established in 2014, encourages vulnerability testing by security researchers and by customers, and we proactively and voluntarily share the results with CISA for an advisory posting,” a Philips spokesperson said by email on Wednesday.

THE LARGER TREND

Hospitals that manage, store and transmit digital medical images and reports – X-rays, MRIs, CT scans – have been vulnerable to cyber threats before. 

Early in 2023, agencies warned U.S. healthcare organizations that Clop ransomware was targeting medical images.

Clop actors had been infecting image files, submitting them to facilities and requesting medical appointments hoping the virus-laden file would be opened, according to the Health Sector Cybersecurity Coordination Center.

ON THE RECORD

“Under specific conditions, the potential security vulnerabilities identified by Philips could impact or potentially compromise patient confidentiality, system integrity and/or system availability,” Philips said in its advisory.

“Regular patching and updating of PACS are essential steps that need to be continuously taken to verify the security and integrity of healthcare operations, protect patient information and maintain the overall resilience of healthcare services,” the Cyble researchers said. 

This article was updated on July 24, 2024, to include a comment from Philips.

Andrea Fox is senior editor of Healthcare IT News.
Email: [email protected]
Healthcare IT News is a HIMSS Media publication.

The HIMSS Healthcare Cybersecurity Forum is scheduled to take place October 31-November 1 in Washington, D.C. Learn more and register.

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : Healthcare IT News – https://www.healthcareitnews.com/news/cisa-issues-new-pacs-security-advisory

Tags: healthissuessecurity
Previous Post

Rady Children’s debuts free 3D image viewing software, available for other providers

Next Post

U.S. women’s basketball looks invincible ahead of 2024 Paris Olympics

Lebanon aims to lure back wealthy Gulf tourists to jump-start its war-torn economy – Los Angeles Times

Lebanon Sets Sights on Wealthy Gulf Tourists to Revive Its War-Torn Economy

June 8, 2025
Cisco Partners with Monumental Sports & Entertainment to Power New D.C. Arena – Cisco Newsroom

Cisco Teams Up with Monumental Sports & Entertainment to Revolutionize the New D.C. Arena Experience

June 8, 2025
Couples who cuddle before sleep reap key health benefits, study reveals – Fox News

Couples who cuddle before sleep reap key health benefits, study reveals – Fox News

June 8, 2025
‘Damnit, get somebody in there’: Jimmy Patronis presses Ron DeSantis on CFO vacancy – Florida Politics

Damnit, Get Somebody In There!’ Jimmy Patronis Urges Ron DeSantis to Fill CFO Vacancy Immediately

June 8, 2025
Reeves to Announce £86 Billion for Science and Technology in Spending Review – Bloomberg

Reeves Set to Unveil Groundbreaking £86 Billion Investment in Science and Technology!

June 8, 2025
Shotgun sequencing of airborne eDNA achieves rapid assessment of whole biomes, population genetics and genomic variation – Nature

Revolutionizing Biodiversity: Rapid Insights into Ecosystems and Genetic Diversity Through Shotgun Sequencing of Airborne eDNA

June 8, 2025
Earth’s energy balance is rising much faster than scientists predicted, and we have no idea why – Live Science

Unraveling the Mystery: Earth’s Energy Balance is Surging Faster Than Expected!

June 8, 2025
The Undermining of Science — and Society — Continues – UExpress

How the Erosion of Science is Impacting Our Society

June 8, 2025
10 habits that secretly ‘kill’ your happy hormones – Times of India

10 Surprising Habits That Sabotage Your Happy Hormones

June 8, 2025
A GPS Blackout Would Shut Down the World – WIRED

How a GPS Blackout Could Bring the World to a Standstill

June 8, 2025

Categories

Archives

June 2025
MTWTFSS
 1
2345678
9101112131415
16171819202122
23242526272829
30 
« May    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (677)
  • Economy (691)
  • Entertainment (21,597)
  • General (15,275)
  • Health (9,733)
  • Lifestyle (694)
  • News (22,149)
  • People (691)
  • Politics (698)
  • Science (15,909)
  • Sports (21,193)
  • Technology (15,677)
  • World (675)

Recent News

Lebanon aims to lure back wealthy Gulf tourists to jump-start its war-torn economy – Los Angeles Times

Lebanon Sets Sights on Wealthy Gulf Tourists to Revive Its War-Torn Economy

June 8, 2025
Cisco Partners with Monumental Sports & Entertainment to Power New D.C. Arena – Cisco Newsroom

Cisco Teams Up with Monumental Sports & Entertainment to Revolutionize the New D.C. Arena Experience

June 8, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version