Rick Scott pushes ban on federal funds for Chinese medical devices
Synopsis
Key Takeaways
Republican Senator Rick Scott of Florida has called on the US Congress to prohibit hospitals and clinics that receive federal healthcare funding — including Medicare and Medicaid — from purchasing medical devices manufactured by Chinese companies. Scott argues that internet-connected Chinese equipment poses serious cybersecurity and national-security risks, including the potential exposure of sensitive patient data to unauthorised actors.
What Scott Is Demanding
In an opinion piece published on Tuesday, 26 August, Scott wrote: 'We must cut off federal health care dollars – Medicaid, Medicare, all of it – from any hospital or clinic that purchases medical devices from Chinese companies.' He further called for Chinese-made medical equipment to be phased out of every healthcare facility accepting federal funding and proposed making foreign medical-data espionage a criminal offence.
The Contec CMS8000 Vulnerability
Scott's demands are anchored in a documented cybersecurity case involving the Contec CMS8000 patient monitor, manufactured by a China-based company. The device is used to display patients' vital signs, including heart rate, blood pressure, and electrocardiogram readings.
The US Food and Drug Administration (FDA) issued a safety communication in January 2025 warning that the Contec CMS8000 and a relabelled version, the Epsimed MN-120, could put patients at risk when connected to the internet. Federal authorities identified three vulnerabilities: the monitors could be controlled remotely by an unauthorised user, could fail to operate as intended, and could expose connected hospital networks to intrusion. A software 'backdoor' was also found that could allow unauthorised actors to bypass cybersecurity controls.
According to the FDA, once connected to the internet, the monitors collected and transmitted patient information — including diagnoses, medication details, and biometric readings — outside the healthcare environment. Scott wrote: 'A machine designed to help doctors and hospitals make life or death decisions conveniently was capable of sending sensitive patient data straight home to Beijing.'
The FDA noted, however, that it was not aware of any cybersecurity incident, injury or death linked to these vulnerabilities. Contec subsequently developed a software patch, which the FDA confirmed in July 2025 removed networking functions from the affected devices, restricting them to local monitoring only.
The Broader National-Security Argument
Scott framed the Contec case as illustrative of a wider threat. 'The same is true, and may be even more dangerous, when that technological device is sitting in a hospital's intensive care unit,' he said. He urged Congress to deploy trade-enforcement measures to restrict Chinese medical equipment imports, arguing that American patients deserve assurance that the machines monitoring them are controlled solely by their doctors and hospitals.
Commerce Department Investigation
Scott's push comes as the US Commerce Department has already opened a national-security investigation into imports of personal protective equipment, medical consumables, and medical equipment under Section 232 of the Trade Expansion Act. The probe is examining US dependence on foreign suppliers, foreign subsidies, possible supply-chain manipulation, and whether tariffs or quotas are needed to protect national security. It covers a wide range of equipment, including hospital beds, pacemakers, insulin pumps, ventilators, scanners, and patient-monitoring devices.
The investigation signals that Scott's proposals, while not yet legislation, are entering a receptive policy environment as Washington accelerates its scrutiny of Chinese technology embedded in critical US infrastructure.