The Department of Health and Human Services (HHS) said that data does not suggest medical device vulnerabilities are common cybersecurity exploits. However, these devices require attention due to potential cybersecurity threats. The FDA and CISA have been managing medical device cybersecurity coordination, but their five-year-old agreement needs updating. Moreover, new legislation empowers the FDA to require manufacturers to submit plans for monitoring and addressing vulnerabilities on new devices.

The Shai-Hulud npm malware attack: A wake-up call for supply chain security – Security Boulevard
The Shai-Hulud npm malware attack: A wake-up call for supply chain security Security Boulevard