
TRC analysis shows attackers exploiting CVE-2025-1001 in RadiAnt DICOM Viewer perform MITM attacks during software updates to deliver malicious payloads. The compromised medical imaging software enables lateral movement across healthcare networks. Runtime segmentation helps contain post-compromise activity in critical infrastructure. #MedicalSecurity #ZeroTrust :link: Full TRC analysis: https://aviatrix.ai/threat-research-center/icsma-25-051-01-cve-2025-1001
Post summary
The post reports that CVE-2025-1001 is actively being exploited in RadiAnt DICOM Viewer installations, using MITM during updates to deliver malicious code, but it does not provide a PoC or remediation advice.
