Related Experiment Video
Updated: Dec 21, 2025

Introduction of an Integrated Pathology Image Management, Artificial Intelligence, and Reporting System
Published on: July 11, 2025
Cybersecurity Challenges for PACS and Medical Imaging
Marco Eichelberg1, Klaus Kleber2, Marc Kämmerer2
1OFFIS-Institute for Information Technology, R&D Department Health, Escherweg 2, Oldenburg 26121, Germany.
Healthcare cybersecurity is critical. This study outlines five attack scenarios targeting medical imaging systems (PACS) and networks, emphasizing the need for better security guidelines and vendor implementation to protect patient data.
Area of Science:
- Medical Informatics
- Cybersecurity
- Health IT
Background:
- Healthcare cybersecurity threats are escalating, with a notable increase in attacks targeting medical networks and data formats.
- Digital Imaging and Communications in Medicine (DICOM) and Picture Archiving and Communications Systems (PACS) are increasingly vulnerable.
- Existing security measures are often underutilized by healthcare providers and vendors.
Purpose of the Study:
- To identify and describe prevalent cybersecurity attack scenarios targeting PACS and medical imaging networks.
- To highlight the gaps in current security practices and the need for specialized guidelines.
- To propose solutions for enhancing the security of medical imaging systems.
Main Methods:
- Analysis of five distinct attack vectors on PACS and medical imaging networks.
- Categorization of attacks including malware on storage media, network compromise, embedded malware in DICOM images/reports, image manipulation, and Health Level Seven (HL7) message infiltration.
- Review of existing prevention and mitigation strategies.
Main Results:
- Five key attack scenarios were detailed: malware import, hospital network compromise, DICOM malware, medical image manipulation, and malicious HL7 messages.
- Prevention and mitigation measures are available but not consistently implemented by users or vendors.
- A lack of practical PACS network security guidelines for practitioners was identified.
Conclusions:
- There is an urgent need for comprehensive PACS network security guidelines tailored for healthcare practitioners.
- Enhanced collaboration between users and vendors is crucial for implementing robust security measures.
- Integration of healthcare enterprise integration profiles and testing tools is recommended for secure deployment of technologies like public key infrastructure and digital signatures in PACS environments.
Related Concept Videos
Ethical Standards I
The Code of Ethics provisions outline the nurse's duty to the patient, the healthcare team, the profession, and society. The Code's fundamental principles include advocacy,...
Guidelines and Strategies for Safe Computer Charting
Maintain Confidentiality and Security:
Issues And Trends In Healthcare Delivery System
Cost Containment
Payment for healthcare services has historically promoted adoption of costly and often unnecessary or inefficient...
Legal Guidelines for Documentation
Imaging Studies for Cardiovascular System III: X-Ray
Definition and Purpose
An X-ray, or radiograph, is a non-invasive method that uses ionizing radiation to take images of internal structures. It is mainly used in cardiac imaging to examine the heart, lungs, and major blood vessels, aiming to identify abnormalities in the heart's size, shape, and position, such as heart failure, congenital defects, and vascular...
Computed Tomography
The technique was invented in the 1970s and is based on the principle that as X-rays pass through the body, they are absorbed or reflected at different levels. In the technique, a patient lies on a motorized platform while a computerized axial tomography (CAT) scanner rotates...

