Cynerio Discovers Vulnerabilities to Remotely Control Hospital Robots
Cynerio discovers five zero-day vulnerabilities collectively known as JekyllBot:5, that allow attackers to remotely control hospital robots.
Stay updated with breaking news from Cynerio Live. Get real-time updates on events, politics, business, and more. Visit us for reliable news and exclusive interviews.
Cynerio discovers five zero-day vulnerabilities collectively known as JekyllBot:5, that allow attackers to remotely control hospital robots.
The now patched JekyllBot:5 vulnerabilities in Aethon TUG robots expose three communications interfaces, two APIs, and a websocket interface.
These flaws could be exploited over the network and internet, requiring a low skillset, no privileges, and no interaction. The research found the robots mostly likely don’t allow security agents to be installed, so the only mitigation would be to apply the updates or completely reconfigure the devices’ operating system.