Healthcare sector experts said medical device cybersecurity may become more manageable as manufacturers provide more complete software bills of materials (SBOMs) and hospitals improve asset visibility. Phil Englert of Health-ISAC said that when vulnerabilities such as SweynTooth emerge, organizations with better device component inventories can more quickly identify affected systems, and he pointed to U.S. FDA rules in effect since 2023 that require medical device makers to include SBOMs for commercial, open-source, and off-the-shelf components in premarket submissions for covered "cyber devices."
Englert said higher-quality, more consistent SBOM data, combined with evolving AI-enabled tools, should help healthcare delivery organizations and manufacturers streamline vulnerability identification and resilience efforts across medical device environments. The reporting is based on the same HIMSS 2026 interview carried by two outlets, while separate commentary on systemic third-party risk in healthcare tied to the Change Healthcare ransomware incident addresses a different issue and does not describe the same specific development in medical device security.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
At the HIMSS 2026 conference in Las Vegas, Phil Englert of Health-ISAC said broader sharing and better use of SBOMs are improving hospitals' and manufacturers' ability to identify affected devices and respond to newly disclosed vulnerabilities such as SweynTooth. He also said higher-quality SBOMs combined with evolving AI-enabled tools should make medical device vulnerability management and resilience easier over time.
U.S. Food and Drug Administration regulations effective in 2023 began requiring medical device makers to include software bills of materials for cyber devices in pre-market submissions, covering commercial, open-source, and off-the-shelf components.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.