Varist Launches Detection Engine for Enhanced Medical Image Security Across DICOM, HL7, and FHIR
Varist Scanner Boosts Medical Image Security Against Malware - AI CERTs News
Summary
Varist announced a detection engine supporting DICOM, HL7, and FHIR flows to combat malware. This system analyzes complex medical image metadata and legacy protocols in real time, significantly strengthening PACS protection.
Details
The article highlights growing security concerns in the healthcare sector, noting that while AI adoption increases, many imaging archives remain vulnerable due to reliance on older protocols. Significant risks include exposed DICOM servers and unprotected patient records. In response, Varist launched its DICOM Detection Engine on June 16, 2026. This platform combines static parsing with behavioral simulation to scan DICOM, HL7, and FHIR flows in real time, uncovering embedded malware. Technically, it addresses sophisticated attack vectors such as zero-day threats bypassing signature engines, or shellcode hidden via steganography within normal slices. The engine boasts high performance (500 files/second) and low latency (sub-10 milliseconds), while maintaining a very low false-positive rate. However, the article stresses that no single tool solves systemic weaknesses. Operational challenges persist, including flat networks, unpatchable legacy modalities, and the conflict between deep inspection and patient privacy (encryption). Therefore, it advocates for a multi-layered defense strategy: segmenting PACS clusters, using protocol-aware firewalls, integrating detection with SIEM workflows, and conducting red-team drills to ensure resilient healthcare cyber postures.
Original content copyright by respective publishers