The world has changed, and software security has to change with it. Artificial intelligence is changing the risk profile of software by accelerating vulnerability discovery and exploit development. Geopolitical tensions are rising, putting more critical systems into...
Download RunSafe’s 2025 Medical Device Cybersecurity Index
Industry-defining insights from 605 healthcare decision-makers on medical device cybersecurity
Medical device cybersecurity has evolved from an IT concern to a patient safety imperative. Our comprehensive survey of 605 healthcare executives reveals how cyberattacks on medical devices are reshaping procurement decisions, budget priorities, and patient care across the healthcare ecosystem.
Key Findings At-a-Glance:
- 22% of healthcare organizations have experienced cyberattacks on medical devices
- 75% of these incidents affected patient care
- 46% have declined device purchases due to cybersecurity concerns
- 79% are willing to pay premium prices for devices with advanced security
- 35% now identify medical devices as their biggest cybersecurity concern
What’s Inside the Report:
- Real-world examples of how cyber incidents are affecting patient care
- How security is changing procurement and vendor expectations
- Where healthcare budgets are shifting—and why
- What healthcare buyers now demand from medical device manufacturers
- What forward-thinking leaders can do to stay ahead
Who Should Read This Report:
- Healthcare executives and decision-makers
- Medical device manufacturers and vendors
- Healthcare IT and security professionals
- Healthcare procurement professionals
- Healthcare investors and analysts
Check Out Our Latest Blog Posts
Following Water System Cyberattacks, What Should “Secure” Actually Mean?
In late July, a coordinated cyberattack hit the operational technology (OT) at more than 30 community water systems in Minnesota, the first state to confirm what has since grown into a much larger campaign. Cyberattacks on water and wastewater systems have now been...
Preparing for the CRA: SBOM Adoption for Embedded Software Teams
On July 27, 2026, the European Commission published its most substantial guidance yet on applying the EU Cyber Resilience Act (CRA). The guidance helps manufacturers, developers, and businesses of all sizes by working through questions that have caused the most...



