Skip to content

CISA: Medtronic cardiac device impacted by critical bug

July 5, 2023 – Published on SC Media

Healthcare organizations across the U.S. have been warned by the Cybersecurity and Infrastructure Security Agency regarding a critical vulnerability in Medtronic’s Paceart Optima cardiac device data storage system.

Threat actors could leverage the flaw, tracked as CVE-2023-31222, to facilitate cardiac device data modification, deletion, and exfiltration, as well as enable remote code execution and denial-of-service attacks but there has been no evidence so far suggesting active exploitation of the bug, said Medtronic.

Such a flaw should also prompt medical device manufacturers to proactively address security issues, according to GuidePoint Security Operational Technology Consultant Christopher Warner.

Read More HERE.