Varist Launches DICOM Engine to Spot Hidden Malware in Medical Images
Varist launches DICOM engine to spot hidden malware - SecurityBrief Australia
Summary
Cybersecurity company Varist launched a 'DICOM Detection Engine' for medical imaging and Electronic Health Record (EHR) infrastructure. The product is designed to detect malware hidden within medical image files, which conventional scanners often miss.
Details
Varist has developed a specialized detection engine targeting data formats used in healthcare communications networks, specifically DICOM, HL7, and FHIR, utilized across PACS and EHR environments. This system addresses the threat of malware embedded not just in file headers but also within image data regions themselves. Varist notes that attackers can modify image files to act as executables, delivering malicious payloads. The engine's core strength lies in its ability to combine file scanning with real-time simulation of suspicious behavior, allowing it to identify both known malware and zero-day exploits without relying solely on signature databases. It can process large files (up to 3GB) while maintaining high speed and a low false positive rate. Furthermore, the platform supports local deployment, which is crucial in healthcare settings due to strict patient privacy regulations that restrict data movement to public clouds. Varist emphasizes that medical imaging presents a distinct security challenge because traditional tools may overlook embedded threats. The company points to recent major breaches, such as the SimonMed Imaging incident, highlighting the risk of ransomware and double-extortion attacks involving sensitive radiological records. By providing specialized detection without disrupting critical patient care operations, Varist aims to strengthen the resilience of hospital IT infrastructure.
Original content copyright by respective publishers