8
MEDICAL DEVICES FEAR HACKED IoT THE Sara Rampazzi University of Michigan SPQR Lab The apocalypse is already happening, and no one noticed?

HACKED IoT FEAR - USENIX · HACKED IoT MEDICAL DEVICES Sara Rampazzi - [email protected] - spqr.eecs.umich.edu SPQR Lab Trustworthy chain for health devices ELECTRONIC HARDWARE DESIGN

  • Upload
    others

  • View
    4

  • Download
    0

Embed Size (px)

Citation preview

Page 1: HACKED IoT FEAR - USENIX · HACKED IoT MEDICAL DEVICES Sara Rampazzi - srampazz@umich.edu - spqr.eecs.umich.edu SPQR Lab Trustworthy chain for health devices ELECTRONIC HARDWARE DESIGN

MEDICAL DEVICES

FEARHACKED IoT

THE

Sara RampazziUniversity of MichiganSPQR Lab

The apocalypse is already happening, and no one noticed?

Page 2: HACKED IoT FEAR - USENIX · HACKED IoT MEDICAL DEVICES Sara Rampazzi - srampazz@umich.edu - spqr.eecs.umich.edu SPQR Lab Trustworthy chain for health devices ELECTRONIC HARDWARE DESIGN

FEAR THEHACKED IoTMEDICAL DEVICES

Sara Rampazzi - [email protected] - spqr.eecs.umich.eduSPQR Lab

Page 3: HACKED IoT FEAR - USENIX · HACKED IoT MEDICAL DEVICES Sara Rampazzi - srampazz@umich.edu - spqr.eecs.umich.edu SPQR Lab Trustworthy chain for health devices ELECTRONIC HARDWARE DESIGN

FEAR THEHACKED IoTMEDICAL DEVICES

Sara Rampazzi - [email protected] - spqr.eecs.umich.eduSPQR Lab

PACEMAKER

INFUSION PUMP

IMAGING SYSTEM

MONITORING SYSTEM

EHR SYSTEM

NURSECALL

SYSTEMNEUROSTIMULATOR

MEDICALDEVICE

GATEWAYICD

Page 4: HACKED IoT FEAR - USENIX · HACKED IoT MEDICAL DEVICES Sara Rampazzi - srampazz@umich.edu - spqr.eecs.umich.edu SPQR Lab Trustworthy chain for health devices ELECTRONIC HARDWARE DESIGN

FEAR THEHACKED IoTMEDICAL DEVICES

Sara Rampazzi - [email protected] - spqr.eecs.umich.eduSPQR Lab

41.22 billion

158.07 billion

2017 2022

IoT healthcaremarket MarketsandMarkets™

Page 5: HACKED IoT FEAR - USENIX · HACKED IoT MEDICAL DEVICES Sara Rampazzi - srampazz@umich.edu - spqr.eecs.umich.edu SPQR Lab Trustworthy chain for health devices ELECTRONIC HARDWARE DESIGN

FEAR THEHACKED IoTMEDICAL DEVICES

Sara Rampazzi - [email protected] - spqr.eecs.umich.eduSPQR Lab

Security requirements not homogenous

Different devices, different protection

Page 6: HACKED IoT FEAR - USENIX · HACKED IoT MEDICAL DEVICES Sara Rampazzi - srampazz@umich.edu - spqr.eecs.umich.edu SPQR Lab Trustworthy chain for health devices ELECTRONIC HARDWARE DESIGN

FEAR THEHACKED IoTMEDICAL DEVICES

Sara Rampazzi - [email protected] - spqr.eecs.umich.eduSPQR Lab

Page 7: HACKED IoT FEAR - USENIX · HACKED IoT MEDICAL DEVICES Sara Rampazzi - srampazz@umich.edu - spqr.eecs.umich.edu SPQR Lab Trustworthy chain for health devices ELECTRONIC HARDWARE DESIGN

FEAR THEHACKED IoTMEDICAL DEVICES

Sara Rampazzi - [email protected] - spqr.eecs.umich.eduSPQR Lab

Trustworthy chain for health devicesELECTRONICHARDWARE

DESIGN

SW DESIGN AND

DEVELOPMENT

MECHANICAL DESIGN

NETWORK DATABASES

PRODUCT REGULATORY COMPLIANT

VERIFICATION AND

VALIDATION

PRODUCT LIFECYCLE

MANAGEMENT

INTERFACES DESIGN

MANUFACTURERS

PHYSICIANSINSTITUTIONS

ACADEMICS

Page 8: HACKED IoT FEAR - USENIX · HACKED IoT MEDICAL DEVICES Sara Rampazzi - srampazz@umich.edu - spqr.eecs.umich.edu SPQR Lab Trustworthy chain for health devices ELECTRONIC HARDWARE DESIGN

FEAR THEHACKED IoTMEDICAL DEVICES

Sara Rampazzi - [email protected] - spqr.eecs.umich.eduSPQR Lab

Build the trustworthy chain for health devices● Security-based HW/SW

Co-design● Risk-based approach● Centralized health data

management● Authorized third-party

consortiums● International shared

regulation and standard● ...

www.secure-medicine.orgthaw.orgspqr.eecs.umich.edu