Connect with us

Published

on

A popular medical monitor is the latest device produced in China to receive scrutiny for its potential cyber risks.  However, it is not the only health device we should be concerned about. Experts say the proliferation of Chinese health-care devices in the U.S. medical system is a cause for concern across the entire ecosystem. 

The Contec CMS8000 is a popular medical monitor that tracks a patient’s vital signs.  The device tracks electrocardiograms, heart rate, blood oxygen saturation, non-invasive blood pressure, temperature, and respiration rate.  In recent months, the FDA and the Cybersecurity and Infrastructure Security Agency (CISA) both warned about a “backdoor” in the device, an “easy-to-exploit vulnerability that could allow a bad actor to alter its configuration.”  

CISA’s research team described “anomalous network traffic” and the backdoor “allowing the device to download and execute unverified remote files” to an IP address not associated with a medical device manufacturer or medical facility but a third-party university — “highly unusual characteristics” that go against generally accepted practices, “especially for medical devices.”

“When the function is executed, files on the device are forcibly overwritten, preventing the end customer—such as a hospital—from maintaining awareness of what software is running on the device,” CISA wrote.

The warnings says such configuration alteration could lead to, for instance, the monitor saying that a patient’s kidneys are malfunctioning or breathing failing, and that could cause medical staff to administer unneeded remedies that could be harmful. 

The Contec’s vulnerability doesn’t surprise medical and IT experts who have warned for years that medical device security is too lax. 

Hospitals are worried about cyber risks

“This is a huge gap that is about to explode,” said Christopher Kaufman, a business professor at Westcliff University in Irvine, California, who specializes in IT and disruptive technologies, specifically referring to the security gap in many medical devices.

The American Hospital Association, which represents over 5,000 hospitals and clinics in the U.S., agrees. It views the proliferation of Chinese medical devices as a serious threat to the system. 

As for the Contec monitors specifically, the AHA says the problem urgently needs to be addressed. 

“We have to put this at the top of the list for the potential for patient harm; we have to patch before they hack,” said John Riggi, national advisor for cybersecurity and risk for the American Hospital Association.  Riggi also served in FBI counterterrorism roles before joining the AHA. 

CISA reports that no software patch is available to help mitigate this risk, but in its advisory said the government is currently working with Contec. 

Contec, headquartered in Qinhuangdao, China,  did not return a request for comment. 

One of the problems is that it is unknown how many monitors there are in the U.S. 

“We don’t know because of the sheer volume of equipment in hospitals. We speculate there are, conservatively, thousands of these monitors; this is a very critical vulnerability,” Riggi said, adding that Chinese access to the devices can pose strategic, technical, and supply chain risks. 

In the short-term, the FDA advised medical systems and patients to make sure the devices are only running locally or to disable any remote monitoring; or if remote monitoring is the only option, to stop using the device if an alternative is available. The FDA said that to date it is not aware of any cybersecurity incidents, injuries, or deaths related to the vulnerability.

The American Hospital Association has also told its members that until a patch is available, hospitals should make sure the monitor no longer has access to the internet, and is segmented from the rest of the network.

Riggi said the while the Contec monitors are a prime example of what we don’t often consider among health care risk, it extends to a range of medical equipment produced overseas. Cash-strapped U.S. hospitals, he explained, often buy medical devices from China, a country with a history of installing destructive malware inside critical infrastructure in the U.S.  Low-cost equipment buys the Chinese potential access to a trove of American medical information that can be repurposed and aggregated for all sorts of purposes. Riggs says data is often transmitted to China with the stated purpose of monitoring a device’s performance, but little else is known about what happens to the data beyond that. 

Riggi says individuals aren’t at acute medical risk as much as the information being collected and aggregated for repurposing and putting the larger medical system at risk. Still, he points out that, at least theoretically, is can’t be ruled out that prominent Americans with medical devices could be targeted for disruption. 

“When we talk to hospitals,  CEOS are surprised, they had no idea about the dangers of these devices, so we are helping them understand.  The question for government is how to incentivize domestic production, away from overseas,”  Riggi said. 

Chinese data collection on Americans

The Contec warning is similar at a general level to TikTok, DeepSeek, TP-Link routers, and other devices and technology from China that the U.S. government says are collecting data on Americans. “And that is all I need to hear in deciding whether to buy medical devices from China,” Riggi said. 

Aras Nazarovas, an information security researcher at Cybernews, agrees that the CISA threat raises serious issues that need to be addressed. 

“We have a lot to fear,” Nazarovas said. Medical devices, like the Contec CMS8000, often have access to highly sensitive patient data and are directly connected to life-saving functions.  Nazarovas says that when the devices are poorly defended, they become easy prey for hackers who can manipulate the displayed data, alter vital settings, or disable the device completely.  

“In some cases, these devices are so poorly protected that attackers can gain remote access and change how the device operates without the hospital or patients ever knowing,” Nazarovas said. 

The consequences of the Contec vulnerability and vulnerabilities in an array of Chinese-made medical devices could easily be life-threatening.  

“Imagine a patient monitor that stops alerting doctors to a drop in a patient’s heart rate or sends incorrect readings, leading to a delayed or wrong diagnosis,” Nazarovas said. In the case of the Contec CMS8000, and Epsimed MN-120 (a different brand name for the same tech), warning from the government, these devices were configured to allow remote code execution by the remote server.  

“This functionality can be used as an entry point into the hospital’s network,” Nazarovas said, leading to patient danger.  

More hospitals and clinics are paying attention. Bartlett Regional Hospital in Juneau, Alaska, does not use the Contec monitors but is always looking for risks. “Regular monitoring is critical as the risk of cybersecurity attacks on hospitals continues to increase,” says Erin Hardin, a spokeswoman for Bartlett.  

However, regular monitoring may not be enough as long as devices are made with poor security. 

Potentially making matters worse, Kaufman says, is that the Department of Government Efficiency is hollowing out departments in charge of safeguarding such devices. According to the Associated Press, many of the recent layoffs at the FDA are employees who review the safety of medical devices. 

Kaufman laments the likely lack of government supervision on what is already, he says, a loosely regulated industry. A U.S. Government Accountability Office report as of January 2022, indicated that 53% of connected medical devices and other Internet of Things devices in hospitals had known critical vulnerabilities. He says the problem has only gotten worse since then. “I’m not sure what is going to be left running these agencies,” Kaufman said.

“Medical device issues are widespread and have been known for some time now,” said Silas Cutler, principal security researcher at medical data company Censys. “The reality is that the consequences can be dire – and even deadly. While high-profile individuals are at heightened risk, the most impacted are going to be the hospital systems themselves, with cascading effects on everyday patients.”  

Continue Reading

Technology

How quantum could supercharge Google’s AI ambitions

Published

on

By

How quantum could supercharge Google’s AI ambitions

Inside a secretive set of buildings in Santa Barbara, California, scientists at Alphabet are working on one of the company’s most ambitious bets yet. They’re attempting to develop the world’s most advanced quantum computers.

“In the future, quantum and AI, they could really complement each other back and forth,” said Julian Kelly, director of hardware at Google Quantum AI.

Google has been viewed by many as late to the generative AI boom, because OpenAI broke into the mainstream first with ChatGPT in late 2022.

Late last year, Google made clear that it wouldn’t be caught on the backfoot again. The company unveiled a breakthrough quantum computing chip called Willow, which it says can solve a benchmark problem unimaginably faster than what’s possible with a classical computer, and demonstrated that adding more quantum bits to the chip reduced errors exponentially. 

“That’s a milestone for the field,” said John Preskill, director of the Caltech Institute for Quantum Information and Matter. “We’ve been wanting to see that for quite a while.”

Willow may now give Google a chance to take the lead in the next technological era. It also could be a way to turn research into a commercial opportunity, especially as AI hits a data wall. Leading AI models are running out of high-quality data to train on after already scraping much of the data on the internet.

“One of the potential applications that you can think of for a quantum computer is generating new and novel data,” said Kelly. 

He uses the example of AlphaFold, an AI model developed by Google DeepMind that helps scientists study protein structures. Its creators won the 2024 Nobel Prize in Chemistry. 

“[AlphaFold] trains on data that’s informed by quantum mechanics, but that’s actually not that common,” said Kelly. “So a thing that a quantum computer could do is generate data that AI could then be trained on in order to give it a little more information about how quantum mechanics works.” 

Kelly has said that he believes Google is only about five years away from a breakout, practical application that can only be solved on a quantum computer. But for Google to win the next big platform shift, it would have to turn a breakthrough into a business. 

Watch the video to learn more.

Continue Reading

Technology

Nintendo Switch 2 retail preorder to begin April 24 following tariff delays

Published

on

By

Nintendo Switch 2 retail preorder to begin April 24 following tariff delays

An attendee wearing a Super Mario costume uses a Nintendo Switch 2 game console while playing a video game during the Nintendo Switch 2 Experience at the ExCeL London international exhibition and convention centre in London, Britain, April 11, 2025. 

Isabel Infantes | Reuters

Nintendo on Friday announced that retail preorder for its Nintendo Switch 2 gaming system will begin on April 24 starting at $449.99.

Preorders for the hotly anticipated console were initially slated for April 9, but Nintendo delayed the date to assess the impact of the far-reaching, aggressive “reciprocal” tariffs that President Donald Trump announced earlier this month.

Most electronics companies, including Nintendo, manufacture their products in Asia. Nintendo’s Switch 1 consoles were made in China and Vietnam, Reuters reported in 2019. Trump has imposed a 145% tariff rate on China and a 10% rate on Vietnam. The latter is down from 46%, after he instituted a 90-day pause to allow for negotiations.

Nintendo said Friday that the Switch 2 will cost $449.99 in the U.S., which is the same price the company first announced on April 2.

“We apologize for the retail pre-order delay, and hope this reduces some of the uncertainty our consumers may be experiencing,” Nintendo said in a statement. “We thank our customers for their patience, and we share their excitement to experience Nintendo Switch 2 starting June 5, 2025.”

The Nintendo Switch 2 and “Mario Kart World bundle will cost $499.99, the digital version “Mario Kart World” will cost $79.99 and the digital version of “Donkey Kong Bananza” will cost $69.99, Nintendo said. All of those prices remain unchanged from the company’s initial announcement.

However, accessories for the Nintendo Switch 2 will “experience price adjustments,” the company said, and other future changes in costs are possible for “any Nintendo product.”

It will cost gamers $10 more to by the dock set, $1 more to buy the controller strap and $5 more to buy most other accessories, for instance.

WATCH: Nintendo has ‘a lot of work to do’ to convince casual users to upgrade to Switch 2: Kantan Games

Nintendo has 'a lot of work to do' to convince casual users to upgrade to Switch 2: Kantan Games

Continue Reading

Technology

Etsy touts ‘shopping domestically’ as Trump tariffs threaten price increases for imports

Published

on

By

Etsy touts 'shopping domestically' as Trump tariffs threaten price increases for imports

An employee walks past a quilt displaying Etsy Inc. signage at the company’s headquarters in the Brooklyn.

Victor J. Blue/Bloomberg via Getty Images

Etsy is trying to make it easier for shoppers to purchase products from local merchants and avoid the extra cost of imports as President Donald Trump’s sweeping tariffs raise concerns about soaring prices.

In a post to Etsy’s website on Thursday, CEO Josh Silverman said the company is “surfacing new ways for buyers to discover businesses in their countries” via shopping pages and by featuring local sellers on its website and app.

“While we continue to nurture and enable cross-border trade on Etsy, we understand that people are increasingly interested in shopping domestically,” Silverman said.

Etsy operates an online marketplace that connects buyers and sellers with mostly artisanal and handcrafted goods. The site, which had 5.6 million active sellers as of the end of December, competes with e-commerce juggernaut Amazon, as well as newer entrants that have ties to China like Temu, Shein and TikTok Shop.

By highlighting local sellers, Etsy could relieve some shoppers from having to pay higher prices induced by President Trump’s widespread tariffs on trade partners. Trump has imposed tariffs on most foreign countries, with China facing a rate of 145%, and other nations facing 10% rates after he instituted a 90-day pause to allow for negotiations. Trump also signed an executive order that will end the de minimis provision, a loophole for low-value shipments often used by online businesses, on May 2.

Temu and Shein have already announced they plan to raise prices late next week in response to the tariffs. Sellers on Amazon’s third-party marketplace, many of whom source their products from China, have said they’re considering raising prices.

Silverman said Etsy has provided guidance for its sellers to help them “run their businesses with as little disruption as possible” in the wake of tariffs and changes to the de minimis exemption.

Before Trump’s “Liberation Day” tariffs took effect, Silverman said on the company’s fourth-quarter earnings call in late February that he expects Etsy to benefit from the tariffs and de minimis restrictions because it “has much less dependence on products coming in from China.”

“We’re doing whatever work we can do to anticipate and prepare for come what may,” Silverman said at the time. “In general, though, I think Etsy will be more resilient than many of our competitors in these situations.”

Still, American shoppers may face higher prices on Etsy as U.S. businesses that source their products or components from China pass some of those costs on to consumers.

Etsy shares are down 17% this year, slightly more than the Nasdaq.

WATCH: Amazon CEO Andy Jassy says sellers will pass cost of tariffs on to consumers

Amazon CEO Andy Jassy: Sellers will pass increased tariff costs on to consumers

Continue Reading

Trending