 |
|
 |
Kill Switch For Pacemakers (And Countermeasures)
Medical device security researchers have figured out how to turn off a pacemaker via remote control.

(Pacemaker implantation diagram)
A pacemaker is a small, battery-operated electronic device which is inserted under the skin to help the heart beat regularly and at an appropriate rate. The pacemaker has leads that travel through a large vein to the heart, where the wires are anchored. The leads send the electrical impulses to the heart to tell it to beat.
Kevin Fu, an associate professor at the University of Massachusetts at Amherst and director of the Medical Device Security Center, said that his team and researchers at the University of Washington spent two years working on the challenge.
William H. Maisel, a doctor at Beth Israel Deaconess Hospital and Harvard Medical School, granted Fu access for the project. Fu received an old pacemaker as the doctor installed a new one in a patient. The team had to use complicated procedures to take apart the pacemaker and reverse engineer its processes. Halperin said that the devices have a built-in test mechanism which turns out to be a bug that can be exploited by hackers. There is no cryptographic key used to secure the wireless communication between the control device and the pacemaker.
A computer acts as a control mechanism for programming the pacemaker so that it can be set to deal with a patient’s particular defribrillation needs. Pacemakers administer small shocks to the heart to restore a regular heartbeat. The devices have the ability to induce a fatal shock to a heart.
The authors of the study presented several different zero-power approaches to improve the security of implanted medical devices:
Our contributions include three zero-power defenses and
prototype implementations, one of which we evaluated for
effectiveness in a substance approximating the radio properties
of human tissue. Zero-power notification harvests induced RF
energy to wirelessly power a piezo-element that audibly alerts
the patient of security-sensitive events at no cost to the battery.
Zero-power authentication similarly harvests RF energy to
power a cryptographically strong protocol that authenticates
requests from an external device programmer. Finally, sensible
key exchange combines techniques from both zero-power
notification and zero-power authentication for vibration-based
key distribution that a patient can sense through audible and
tactile feedback. While we implemented prototypes of our
proposed defenses, we did not incorporate our prototypes into
a real IMD. (We use the term zero-power only to emphasize
that no expenditure of energy from the primary battery is
necessary. Zero-power defenses are also a step beyond the
use of a secondary battery for security-only or other auxiliary
purposes.)
I'm sure someone can think of a better sfnal reference for the idea of turning a person off by remote control; I do recall the "heartplugs" installed by the evil Baron Harkonnen in the (awful) movie version of Dune.
From Defcon: Excuse me while I turn off your pacemaker; see also the author's paper Pacemakers and Implantable Cardiac Defibrillators:
Software Radio Attacks and Zero-Power Defenses [pdf].
Scroll down for more stories in the same category. (Story submitted 8/10/2008)
Follow this kind of news @Technovelgy.
| Email | RSS | Blog It | Stumble | del.icio.us | Digg | Reddit |
Would
you like to contribute a story tip?
It's easy:
Get the URL of the story, and the related sf author, and add
it here.
Comment/Join discussion ( 3 )
Related News Stories -
("
Medical
")
Mind-Control Lights At Vancouver Olympics
This doesn't quite bring The Game (from ST:TNG) to the Olympic Games, but close.
Virtual Reality Exposure Therapy For Iraq Vets
Extensive study now being done on the uses of virtual reality in combatting PTSD in returning veterans.
App Turns iPhone Into Autodoc (Almost)
It doesn't treat your injuries (yet), but the Pocket First Aid & CPR app provided enough information and assistance to save the life of a man trapped by the earthquake in Haiti.
Vitalsens Continuous Medical Monitoring
Why shouldn't your doctor be able to check up on you between office visits - if you want him or her to be able to do so?
Technovelgy (that's tech-novel-gee!)
is devoted to the creative science inventions and ideas of sf authors. Look for
the Invention Category that interests
you, the Glossary, the Invention
Timeline, or see what's New.
|
 |
Current News
Put MercuryHouseOne Anywhere
Perhaps looking out through the spray of Victoria Falls.
Computational Wood: Grow Circuits In Living Trees
Just tap into the information tree.
SIRI Virtual Assistant Like Pohl's Joymaker
Man Forrester! Your joymaker is ready.
Liquid Glass Universal Spray-On Protectant
Also used to protect galactic way stations.
WIND Wearable Robot Controller
Robot wirelessly sense, robot do.
Gesture Cube Touch-Free Input
Just think of the gestures you'll use!
IMPASS Robot 'Smart Wheel' Video
I love it when good robot research comes together.
Predator, Prey Robots Evolve
Humanity must make a choice about robot evolution.
Mind-Control Lights At Vancouver Olympics
Bringing The Game to the Olympic Games.
PALRO Companion Robot
Who's your favorite companion robot?
Wasabi Smoke Alarm Now Available
It's an odalarm!
Spyder Olympic GS Suit With d3o
An impact suit made with a shear thickening material.
First Transistor That Mimics Brain Synapse
The Nexus Six phone will need a Nexus-6 brain.
Legged Squad Support System Monster BigDog Robot
A robotic pack mule for soldiers.
Implantable Energy-Harvesting Rubber Sheets
Take a deep breath, and power up that cell phone!
Bose Ride System Smooths Your Ride
Ride the spaceways - uh, roads - in comfort.
More SF in the News Stories
More Beyond Technovelgy science news stories
|
 |