NP-200 system security design review
NimbusPump NP-200 Program · candidate AREV-0004 vs effective baseline DRB-0007
PRJ-2026-0042-DRV-0001Threat review
Threat workbench
Time source manipulation skews infusion event timestamps
PRJ-2026-0042-TV-000143Proposed
- Proposed (current)
- Confirmed (pending)
- Assessed (pending)
- Treatment planned (pending)
- Mitigation pending (pending)
- Verified (pending)
- Closed (pending)
Manipulating the device time source would skew audit and infusion event timestamps, weakening event correlation and repudiation resistance across the fleet record.
Deterministic ruleConfidence medium
Actor: Network attacker able to spoof NTP or gateway time sync.
- Device accepts unauthenticated time updates.
- Spoof time source on clinical network.
- Shift device clock.
- Break cross-record event ordering.
No assessment yet: the threat is awaiting triage (proposed).
- Responsible implementer
- Unassigned
- Accountable manager
- Unassigned
- Independent security reviewer
- Unassigned
- Risk owner
- Unassigned
- Target date
- Not set
- Disposition
- Awaiting triage
- Treatment adopted (pending)
- Implemented (pending)
- Evidence accepted (pending)
- Retest passed (pending)
- Closed (pending)
No remediation options recorded for this threat yet.
EvidenceNot requestedRetestNot scheduled
- Proposed by deterministic rule DST-REP-04 (run TMR-0009)system