Zingbox Reveals Details of the Vulnerabilities in Telepresence Robots


Zingbox, the provider of the most widely deployed healthcare Internet of Things (IoT) analytics platform, today announced research detailing the vulnerabilities in telepresence robots that can be leveraged by hackers to access sensitive data such as chat conversations, images and live video streams.

Following the initial findings showcased at the RSA conference in April 2018, Zingbox security researchers continued to work with the manufacturers. These efforts resulted in five Common Vulnerabilities and Exposures (CVEs) outlining various vulnerabilities, ranging from unprotected credentials to unauthorized remote access. Zingbox is now releasing the details of the vulnerabilities after the manufacturers had an opportunity to address the issues.

“While much of the burden of ensuring device security falls on the healthcare providers, the collaboration between device manufacturers and security vendors is a critical component to assist healthcare providers,” said Daniel Regalado, principal security researcher at Zingbox and co-author of Gray Hat Hacking. “I commend the quick actions by the device manufacturers, which enable us to share additional details regarding this vulnerability and educate the industry on the latest cyber threats.”

The research provides details on how a telepresence robot can initially be targeted by intercepting firmware updates or gaining access via remote hacking. In addition to the theft of sensitive data, the report also details how a hacker can gain access to video recordings.

For more details, the full report is available here.

 



October 25, 2018


Topic Area: Press Release


Recent Posts

Healthcare Real Estate: Challenges and Industry Shifts for 2025

The hurdles include balancing expansion with financial constraints, the sustainability of office and retail conversions, and technological disruptions.


Geisinger to Build $32 Million Cancer Center in Pennsylvania

The two-story, 40,000-square-foot facility will be home to the cancer center with space for future growth of services.


Sunflower Medical Group Experiences Data Breach

To date, Sunflower has no evidence that personal information has been misused.


Strategies to Eradicate Biofilm Containing C. Auris

Understanding the speed and risks of contamination after room disinfection should inform managers’ environmental cleaning recommendations.


Man Attacks Nurses, Police Officer at Jefferson Hospital

The man allegedly attacked the staff members before being restrained and sedated.


 
 


FREE Newsletter Signup Form

News & Updates | Webcast Alerts
Building Technologies | & More!

 
 
 


All fields are required. This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.