Hackers of India

Medaudit: Auditing Medical Devices and Healthcare Infrastructure

By  Anirudh Duggal  on 07 Aug 2019 @ Blackhat : Arsenal

This Tool Demo covers following tools where the speaker has contributed or authored
MEDAUDIT

Abstract

Medaudit is a healthcare/ medical device auditing tool that would help anyone auditing a healthcare networks and medical devices. At the time of writing, there are no tools - commercial or free - that can help security pentest healthcare infrastructure. This tool aims to close that gap and help security analysts use their web app skill set to analyze medical devices. The tool support HL7 protocol right now and will have support for FHIR and DICOM in near future.

The tool does the following things:

The tool also acts a proxy using web API so you can reuse web application tests on medical devices.