As an international standard for medical imaging and image communication, DICOM defines the formats for medical images and ensures that they can be exchanged with the required data and in the required quality for clinical use.
DICOM technically defines the file format and the network protocol. The file format is designed to store medical images and patient data. It may contain data from different imaging modalities, such as radiography, ultrasonography and computed tomography. It usually contains a lot of metadata (e.g. patient data). The network protocol 104/tcp is a a client-server protocol used to transfer medical images. It is frequently used to integrate medical imaging devices and Picture Archiving and Communication Systems (PACS).
During the penetration test we for example check if the medical data is transmitted unencrypted, how CVE-2019-11687 is mitigated and are going to fuzz the DICOM API using our python dicom fuzzing library.
Talk now
to our
Pentest experts.
Contact us
OSCP, M.Sc. Security Management
Talk now to our Pentest experts.
OSCP, M.Sc. Security Management
Penetration Testing
Since 2013, we have been conducting professional penetration tests. All engagements are performed in accordance with international standards and backed by years of operational experience in penetration testing, red teaming, and offensive security. Originally rooted in the payment, finance, and banking sector, we bring extensive experience in highly regulated and security-critical environments.
As a specialized provider for professional penetration testing, we clearly distinguish between vulnerability scans and actual penetration testing. Tools are used selectively and interpreted within a clear methodology. However, decisive insights usually result from structured manual identification and analysis. We identify technical and business-critical weaknesses and subsequently assess them in a structured way based on their real-world risk. Looking for a professionally conducted penetration test with traceable results? Then binsec is your partner.
Contact us