Healthcare cyberattacks hit pacemakers and millions of patient records
Key Points:
- Boston Scientific is experiencing an ongoing cyberattack that has disrupted remote monitoring and data transmission for new cardiac devices implanted after August 25, affecting patient care and device functionality.
- The attack has also impacted Boston Scientific’s manufacturing, shipping, and ordering systems, with partial restoration efforts underway but no timeline for full recovery; the company is working with cybersecurity firm CrowdStrike.
- McKesson confirmed a cybersecurity breach linked to unauthorized access to third-party applications affecting some customers in its Oncology & Multispecialty and Medical-Surgical units, though it has not disclosed the number of affected patients or specific data stolen.
- The hacking group ShinyHunters claimed responsibility for the McKesson breach, alleging they stole over 284 million patient records and demanded a $55.2 million ransom, but experts caution that such figures should be treated skeptically until verified.
- McKesson maintains that its distribution centers remain operational and that the attackers have been removed from its systems, while the stolen data reportedly includes sensitive patient information such as Social Security numbers, medical details, and private communications.