avatar

Like a computer network but for physical objects. [Research Saturday]

CyberWire Daily
CyberWire Daily
Episode • Sep 4, 2021 • 23m

Guest Ben Seri, Armis' VP of Research, joins Dave to talk about a set of remote code execution (RCE) vulnerabilities in the pneumatic tube system of Swisslog. Nine vulnerabilities in critical infrastructure used by 80% of major hospitals in North America.

Swisslog’s Translogic Pneumatic Tube System (PTS), a solution that plays a crucial role in patient care, found vulnerable to devastating attack. Dubbed PwnedPiper, the vulnerabilities allow for complete take over of the Translogic Nexus Control Panel, which powers all current models of Translogic PTS stations. Older IP-connected Translogic stations are also impacted, but are no longer supported by Swisslog.

The research can be found here:

Learn more about your ad choices. Visit megaphone.fm/adchoices

Switch to the Fountain App