Stryker Hit by Cyberattack Claimed by Pro-Iran Hacking Group Handala
Medical technology firm Stryker, a leading manufacturer of surgical tools and medical implants based in Kalamazoo, Michigan, confirmed a cyberattack on Wednesday that disrupted its global Microsoft environment. The company stated it had no evidence of ransomware or malware and believed the incident was contained, though it is still assessing the impact. Continuity measures remain in place to support customers and partners.
The pro-Iran hacking group Handala claimed responsibility for the attack, alleging it wiped over 200,000 systems, servers, and mobile devices and exfiltrated 50 terabytes of critical data. The group cited retaliation for the ongoing regional conflict and a February 28 airstrike on a girls' elementary school in Minab, Iran, which killed 168 people, as motivations. While the attack’s origins remain unconfirmed, U.S. military operations were reported near the site.
Stryker has not disclosed further details, and U.S. officials have not commented on the incident. The investigation is ongoing.
Stryker cybersecurity rating report: https://www.rankiteo.com/company/stryker
"id": "STR1773268034",
"linkid": "stryker",
"type": "Cyber Attack",
"date": "5/2023",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'industry': 'Medical devices and surgical tools',
'location': 'Kalamazoo, Michigan, USA',
'name': 'Stryker',
'type': 'Medical technology firm'}],
'data_breach': {'data_exfiltration': '50 terabytes',
'type_of_data_compromised': 'Critical data'},
'date_detected': 'Wednesday',
'description': 'Medical technology firm Stryker confirmed a cyberattack that '
'disrupted its global Microsoft environment. The pro-Iran '
'hacking group Handala claimed responsibility, alleging data '
'exfiltration and system wipes in retaliation for regional '
'conflict.',
'impact': {'data_compromised': '50 terabytes',
'operational_impact': 'Disrupted global Microsoft environment',
'systems_affected': '200,000 systems, servers, and mobile devices'},
'investigation_status': 'Ongoing',
'motivation': ['Retaliation for ongoing regional conflict',
"February 28 airstrike on a girls' elementary school in Minab, "
'Iran'],
'references': [{'source': 'Cyber incident report'}],
'response': {'containment_measures': 'Incident believed to be contained',
'recovery_measures': 'Continuity measures in place to support '
'customers and partners'},
'threat_actor': 'Handala',
'title': 'Stryker Hit by Cyberattack Claimed by Pro-Iran Hacking Group '
'Handala',
'type': 'Cyberattack'}