423/69 Wednesday, August 5, 2026

Thermo Fisher Scientific has released a security update to fix a Critical vulnerability, tracked as CVE-2026-17583, in its Applied Biosystems Human Identification software, which is used for forensic genetics data analysis and human identification. The vulnerability could allow threat actors to modify DNA analysis data files before they are imported into the system, making verification of file integrity more complex. Thermo Fisher stated that there is currently no evidence that the vulnerability has been actively exploited.
Reports indicate that the vulnerability affects the handling of .fsa and .hid data files, which are used to store information from DNA sample analysis. If an attacker can access these files before they are imported into the software, they may be able to modify the data in a way that the software cannot detect, potentially affecting the integrity and reliability of analysis results. However, Thermo Fisher stated that exploiting this vulnerability would require the attacker to first bypass security measures and internal control processes within the laboratory environment.
Administrators and organizations using Applied Biosystems Human Identification software should install the security update released by Thermo Fisher as soon as possible. They should also properly review and control access to DNA analysis data files, as well as reassess data integrity safeguards and file integrity verification processes to help reduce the risk of unauthorized data modification.
Source: https://thehackernews.com/2026/08/thermo-fisher-patches-flaw-that-could.html
