Healthcare cyberattacks hit pacemakers and millions of patient records
ShinyHunters says it stole millions of patient records and demanded $55 million, while McKesson said distribution centers remain operational.
- On Friday, pharmaceutical giant McKesson confirmed a data breach involving unauthorized access to its cloud-hosted Snowflake and Salesforce environments, noting "intermittent service degradation" while distribution centers remain operational.
- Attackers from the hacking group ShinyHunters claimed responsibility, telling TechCrunch they gained network access by tricking employees through voice phishing to steal sensitive data for extortion.
- Hackers allege they compromised more than 284 million records including Social Security numbers and medical diagnoses, while demanding a $55.2 million ransom that McKesson has not confirmed.
- Francisco Fraga, McKesson's chief information officer, stated the firm has "reasonable assurance" that unauthorized intruders were removed, though the company has yet to identify affected individuals.
- This incident marks the latest in a string of cyberattacks on healthcare companies including Boston Scientific and Medtronic, as campaigns targeting vendor-hosted environments strain patient data security across North America.
10 Articles
10 Articles
McKesson copes with fallout from data theft extortion attack
The major healthcare sector vendor did not identify the attackers, but ShinyHunters, a prolific group increasingly targeting the sector, claimed responsibility. The post McKesson copes with fallout from data theft extortion attack appeared first on CyberScoop.
Hackers claim millions of patient records stolen during data breach at healthcare giant McKesson
The company, which distributes medicines and medical devices to hospitals and healthcare practices across the U.S., said it was hacked and expects intermittent service degradation.
An intrusion into several cloud-hosted McKesson accounts would have allowed millions of rows to be drawn with medical and personal information. ShinyHunters claimed responsibility for the attack and, according to a report quoted by TechCrunch, demanded $55 million to avoid disclosing the files.
McKesson confirms cyber incident after ShinyHunters claims patient-data theft
Healthcare and pharmaceutical-distribution giant McKesson has disclosed a cybersecurity incident involving unauthorized access to third-party applications and the theft of data. McKesson Corporation is an American healthcare company that distributes pharmaceuticals and provides medical supplies, health information technology, and care management tools. McKesson says it discovered the cybersecurity incident on August 25, 2026, and that
Pharmaceutical giant McKesson warns of 'service degradation' following cyberattack | #ransomware | #cybercrime - National Cyber Security Consulting
A cyberattack is causing service issues for the pharmaceutical and healthcare technology company McKesson. The company released a public notice and filed documents with the Securities and Exchange Commission (SEC) on Friday evening saying it is in the early stages of investigating a cybersecurity incident that involves an unnamed third-party application. The hackers have gained […] Thank you for subscribing to our RSS feed! The post Pharmaceutic…
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium







