Suppr超能文献

分析德国医院医疗器械连接及其对网络安全的影响。

Analyzing medical device connectivity and its effect on cyber security in german hospitals.

机构信息

University of Münster, ■■■, Germany.

Münster University of Applied Sciences, ■■■, Germany.

出版信息

BMC Med Inform Decis Mak. 2020 Sep 29;20(1):246. doi: 10.1186/s12911-020-01259-y.

Abstract

BACKGROUND

Modern healthcare devices can be connected to computer networks and many western healthcare institutions run those devices in networks. At the same time, cyber attacks are on the rise and there is evidence that cybercriminals do not spare critical infrastructure such as major hospitals, even if they endanger patients. Intuitively, the more and closer connected healthcare devices are to public networks, the higher the risk of getting attacked.

METHODS

To asses the current connectivity status of healthcare devices, we surveyed the field of German hospitals and especially University Medical Center UMCs.

RESULTS

The results show a strong correlation between the networking degree and the number of medical devices. The average number of medical devices is 25.150, with a median of networked medical devices of 3.600. Actual key users of networked medical devices are the departments Radiology, Intensive Care, Radio-Oncology RO, Nuclear Medicine NUC, and Anaesthesiology in the group of UMCs. In the next five years, the usage of networked medical devices will increase significantly in the departments of Surgery, Intensive Care, and Radiology. We detected a strong correlation between the degree of connectivity and the likelihood of being attacked.The survey answers regarding the cyber security status reveal a lack of security basics in some of the inquired hospitals. We did discover successful attacks in hospitals with separated or subsidiary departments. A fusion of competencies on an organizational level facilitates the right behavior here. Most hospitals rated themselves predominantly positively in the self-assessment but also stated the usefulness of IT security insurance.

CONCLUSIONS

Concluding our results, hospitals are already facing the consequences of omitted measures within their growing pool of medical devices. Continuously relying on historically grown structures without adaption and trusting manufactures to solve vectors is a critical behavior that could seriously endanger patients.

摘要

背景

现代医疗设备可以连接到计算机网络,许多西方医疗机构在网络中运行这些设备。与此同时,网络攻击呈上升趋势,有证据表明,网络犯罪分子不会放过关键基础设施,如大医院,即使这会危及患者。直观地说,医疗设备与公共网络的连接程度越高,受到攻击的风险就越高。

方法

为了评估医疗设备的当前连接状态,我们调查了德国医院的情况,特别是大学医学中心(UMC)。

结果

结果表明,联网程度和医疗设备数量之间存在很强的相关性。医疗设备的平均数量为 25150 台,联网医疗设备的中位数为 3600 台。联网医疗设备的实际主要用户是放射科、重症监护室、放射肿瘤科(RO)、核医学科(NUC)和麻醉科。在未来五年内,外科、重症监护和放射科的联网医疗设备使用量将显著增加。我们发现,连接程度和被攻击的可能性之间存在很强的相关性。关于网络安全状况的调查答案显示,一些被调查医院缺乏安全基础知识。我们确实在具有独立或附属部门的医院中发现了成功的攻击。在组织层面上整合能力有助于正确的行为。大多数医院在自我评估中主要对自己进行了正面评价,但也表示了 IT 安全保险的有用性。

结论

综上所述,医院已经面临着因医疗设备不断增加而导致措施被忽视的后果。不断依赖历史上形成的结构而不进行调整,并相信制造商能够解决漏洞,这是一种可能严重危及患者的关键行为。

https://cdn.ncbi.nlm.nih.gov/pmc/blobs/e810/7526356/347b1199d120/12911_2020_1259_Fig1_HTML.jpg

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验