Nonprofit Acquires Discontinued Cancer Drug to Ensure Patient Access
In an unusual move, the nonprofit Blood Cancer United (formerly the Leukemia & Lymphoma Society) has purchased the remaining supplies of Luvelta, an investigational cancer drug discontinued by Sutro Biopharma in March 2025. As part of the deal, the organization also acquired the drug’s investigational new drug (IND) designation and will manage a compassionate-use program for children with a rare form of blood cancer. The medication will be distributed free of charge to eligible patients while supplies last.
Sutro Biopharma had previously terminated both development and its compassionate-use program for Luvelta, leaving patients without access. Blood Cancer United’s intervention aims to bridge this gap, though availability remains limited by existing stock.
Novo Nordisk Reports Unauthorized Data Access in Cybersecurity Incident
Novo Nordisk, the Danish pharmaceutical company, has disclosed a security breach in which unauthorized parties copied patient data from its internal IT systems. The incident, detected by the company, involved information from clinical trials, including patient IDs, birth years, sex, and health or immunogenicity data. While Novo Nordisk does not believe the breach allows for the identification of individual trial participants, it has launched an investigation with external cybersecurity experts and notified relevant authorities.
No further details on the scope or perpetrators of the breach have been released. The company has not indicated whether the incident will impact ongoing clinical trials or operations.
Novo Nordisk cybersecurity rating report: https://www.rankiteo.com/company/novo-nordisk
"id": "NOV1781273379",
"linkid": "novo-nordisk",
"type": "Breach",
"date": "3/2025",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Healthcare/Pharmaceuticals',
'location': 'Denmark',
'name': 'Novo Nordisk',
'type': 'Pharmaceutical Company'}],
'data_breach': {'data_exfiltration': 'Yes',
'personally_identifiable_information': 'Patient IDs, birth '
'years, sex',
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Patient IDs',
'Birth years',
'Sex',
'Health data',
'Immunogenicity data']},
'description': 'Novo Nordisk disclosed a security breach where unauthorized '
'parties copied patient data from its internal IT systems. The '
'incident involved information from clinical trials, including '
'patient IDs, birth years, sex, and health or immunogenicity '
'data. The company does not believe the breach allows for the '
'identification of individual trial participants.',
'impact': {'data_compromised': 'Patient data from clinical trials, including '
'patient IDs, birth years, sex, and health or '
'immunogenicity data',
'systems_affected': 'Internal IT systems'},
'investigation_status': 'Ongoing',
'references': [{'source': 'Novo Nordisk Public Disclosure'}],
'regulatory_compliance': {'regulatory_notifications': 'Yes'},
'response': {'communication_strategy': 'Public disclosure and notification of '
'relevant authorities',
'third_party_assistance': 'External cybersecurity experts'},
'title': 'Novo Nordisk Unauthorized Data Access in Cybersecurity Incident',
'type': 'Data Breach'}