The Global State of Internet of Healthcare Things (IoHT) Exposures on Public-Facing Networks
ID: 94c0a9e7-5f42-511c-8e7a-bc72d77a28a9
STIX ID: report--94c0a9e7-5f42-511c-8e7a-bc72d77a28a9
Feed Name: Censys Blog
Date Published: 2024-10-10
Date Updated: 2026-04-27
Author: Jean Pierre Ruiz Ocampo; Himaja Motheram
Censys identified 14,004 public IPs exposing healthcare devices and systems—primarily DICOM servers (36%), EMR/EHR portals (28%), PACS, and Mirth Connect instances—creating a large external attack surface for protected health information. The report contextualizes the risk with the ALPHV/BlackCat ransomware attack on Change Healthcare and Microsoft/CISA warnings about active exploitation of Mirth Connect CVEs, and recommends immediate mitigations such as MFA, VPNs/firewalls, and continuous external attack-surface monitoring.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
