FDA Cybersecurity Forum: Manufacturers Explain Coordinated Vulnerability Disclosures

Device firms well-versed in carrying out coordinated vulnerability disclosures said it is important to secure company executive buy-in and to use the principles laid out in an evolving US FDA guidance on cybersecurity for assistance at a recent FDA cybersecurity meeting.

lock security businessman protect concept whistleblower cybersecurity

Device-makerspointed to advice in draft FDA guidance and the need to obtain the support of key company executives as important steps for assuring successful coordinated vulnerability disclosures for their devices. That was one central theme during the second of a two-day cybersecurity meeting held this week at FDA headquarters in Silver Spring, Md. (Also see "FDA Cybersecurity Forum: Trustworthiness, Threat Modeling Central Issues" - Medtech Insight, 1 February, 2019.)

Coordinated vulnerability disclosure is a process where product-makers work with cybersecurity researchers to find vulnerabilities in any software-based product –...

Read the full article – start your free trial today!

Join thousands of industry professionals who rely on Medtech Insight for daily insights

  • Start your 7-day free trial
  • Explore trusted news, analysis, and insights
  • Access comprehensive global coverage
  • Enjoy instant access – no credit card required

More from Cybersecurity

With LDT Rule DOA, Could FDA Shift Focus To RUOs?

 

Now that the US FDA has chosen not to appeal a March ruling effectively killing the agency’s efforts to regulate lab-developed tests as medical devices, will the agency adopt a different strategy to flex its regulatory muscle?

Congress, Researchers Highlight Security Risks At DNA Testing Services

 
• By 

Congress has launched an inquiry into 23andMe amid privacy concerns following its bankruptcy, particularly regarding the potential sale of sensitive user data. Additionally, a Cybernews report gave 40 DNA testing firms an average cybersecurity grade of D, citing widespread vulnerabilities and data breaches, along with inadequate public information about their security practices.

Birmingham City University Develops New Defense Mechanism Against Cyberattacks On AI Systems

 

AI systems used in healthcare are vulnerable to adversarial cyberattacks, which are a growing concern, said Atif Azad, a professor of AI at Birmingham City University. Azad’s research group has developed a method that trains AI to become more resilient to cyber threats through the use of random image adjustments.

Enovis Appoints Damien McDonald CEO, Reaffirms Q1 Guidance Amid Strategic Growth Push

 
• By 

Enovis has named veteran medtech leader Damien McDonald as its new CEO effective 12 May as the orthopedic company reaffirms first-quarter 2025 revenue guidance of between $555m and $563m. Medtech Insight spoke with Tim Czartoski, Enovis’ president of US surgical and global product and enabling technologies, about the firm’s growth strategy and innovation plans.

More from Digital Technologies

Volta Files For US FDA Approval Of Next-Gen Cardio Mapping Software After Winning Labeling Expansion

 
• By 

Volta Medical received a labeling expansion for its AF-Xplorer mapping software to treat A-fib, which provides the clinical evidence needed to broaden US access. The company hopes for FDA clearance for its improved second-gen AF-Xplorer II software.

FDA’s AI Tool Won’t Make Regulatory Decisions, Official Says

 
• By 

Tala Fakhouri said the agency’s use of the AI tool in the review process has generated lots of questions.

ADA 2025: Tandem Becomes Abbott’s Fourth Partner In Push To Advance Dual Sensor CGM Strategy

 
• By 

Ahead of the ADA conference, Abbott announced Tandem as the fourth partner to integrate Abbott’s dual glucose-ketone sensor with automated insulin delivery. Expanded Medicare CGM coverage, FDA label expansions and new ADA guidelines position Abbott to grow its CGM footprint in a competitive market.