Team82 demonstrates a remote attack on patient monitoring systems — showing how hackers could manipulate vital signs and deploy ransomware.
Claroty Team82 researchers Amir Preminger and Sharon Brizinov demonstrate an attack against a patient monitoring system, underscoring why defending against medical device hacking is a critical patient safety priority.
In this attack, Team82 accesses a patient monitoring system remotely, injects code into the device's logic, and alters vital signs readings in real time, directly impacting clinical diagnostic accuracy, while also demonstrating successful ransomware deployment.
Key attack scenarios demonstrated:
Remote access and code injection into patient monitoring device logic
Real-time manipulation of displayed patient vital signs readings
Demonstration of ransomware execution against clinical IoT systems
Strategies for healthcare organizations to protect IoMT and patient safety