Post Ar7fBSNetNUvfbSD0y by cleverboi@mastodon.social
(DIR) More posts by cleverboi@mastodon.social
(DIR) Post #Ar1ZCt3fQTCY1cdtJ2 by stux@mstdn.social
2025-02-11T23:33:09Z
0 likes, 0 repeats
Contec CMS8000 Contains a Backdoor"Contec Health CMS8000 Patient Monitor sends out remote access requests to a hard-coded IP address, bypassing existing device network settings to do so. This could serve as a backdoor and lead to a malicious actor being able to upload and overwrite files on the device."https://www.cisa.gov/resources-tools/resources/contec-cms8000-contains-backdoorhttps://www.cve.org/CVERecord?id=CVE-2025-0626
(DIR) Post #Ar1ZS9pDMxKcN2ADku by stux@mstdn.social
2025-02-11T23:35:57Z
0 likes, 0 repeats
"When the CMS8000 completes its startup routine, it will automatically beacon to the same IP address thatis hard-coded into the backdoor function. Once a connection is established, patient information is thentransmitted via port 515 to the IP address"This info is send to a "random" University in #China
(DIR) Post #Ar1b7jzXuJR4MmO9SK by loganer@mastodon.social
2025-02-11T23:54:41Z
0 likes, 0 repeats
@stux the only thing these things should be hooked up to is the patient.the fact that it has a network connection at all is already a bad idea.
(DIR) Post #Ar1e6tHsA1iSlkFNCq by Puck@sfba.social
2025-02-12T00:28:08Z
0 likes, 0 repeats
@stux Damn. Tech goes too far. I can't even speak confidentially to my doctor without it being recorded unless I check first. I'll be leaving my phone in the truck when I do for doctor visits and will request no devices record our visit. I trust her but not the tech.
(DIR) Post #Ar2OiAsWJeufvu6Z04 by spyhunter@mastodon.social
2025-02-12T09:10:20Z
0 likes, 0 repeats
@stux ok not sure which component is the CSM8000
(DIR) Post #Ar5WN7qbluFzYjZ3Ro by Tedgarrison3@mstdn.social
2025-02-13T21:20:19Z
0 likes, 0 repeats
@stuxI can understand the network access. Lots of hospitals remotely monitor patients from the nurses station...But you'd think hospital IT would have this type of equipment on a locked down vlan with no outbound allowed.
(DIR) Post #Ar7fBSNetNUvfbSD0y by cleverboi@mastodon.social
2025-02-14T22:08:16Z
0 likes, 0 repeats
@stux what the FUCK