Report by Claroty

State of CPS Security: Healthcare Exposures 2025

5 FINDINGSPublished Mar 26, 2025
View Original Report →

Key Findings

9% of IoMT devices contain confirmed KEVs in their systems, impacting 99% of organisations.

ClarotyState of CPS Security: Healthcare Exposures 2025·Mar 26, 2025
HealthcareIoMT devicesVulnerabilitiesKEV

89% of healthcare organisations have the top 1% of riskiest IoMT devices on their networks, which contain known exploitable vulnerabilities (KEVs) linked to active ransomware campaigns and an insecure connection to the internet.

ClarotyState of CPS Security: Healthcare Exposures 2025·Mar 26, 2025
HealthcareIoMT devicesVulnerabilitiesKEVRansomware

1% of IoMT devices carry KEVs linked to active ransomware campaigns and insecure internet connectivity, impacting 89% of organisations.

ClarotyState of CPS Security: Healthcare Exposures 2025·Mar 26, 2025
HealthcareIoMT devicesVulnerabilitiesKEVRansomware

8% of imaging systems (X-rays, CT scans, MRI, ultrasound, and more) have KEVs linked to ransomware and insecure internet connectivity, making this the riskiest medical device category and impacting 85% of organisations.

ClarotyState of CPS Security: Healthcare Exposures 2025·Mar 26, 2025
HealthcareVulnerabilitiesKEVImaging systems

20% of HIS (hospital information systems), which manage clinical patient data, as well as administrative and financial information, have KEVs linked to ransomware and insecure internet connectivity, impacting 58% of organisations

ClarotyState of CPS Security: Healthcare Exposures 2025·Mar 26, 2025
HealthcareVulnerabilitiesKEVRansomwareInsecure internet connectivity