Live data from Hacker News

Iran-backed hackers claim wiper attack on medtech firm Stryker

krebsonsecurity.com

11–20 of 342 posts

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#11

Seems dire but hardly a supply chain disrupting attack. Stryker is a huge supplier but it not as if this will debilitate the medical supply chain completely. Seems like the hackers found a door they could kick open easily and then justified the action ex-post.

My understanding is that the aim was not to disrupt the supply chain but to harm the company itself.

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#12
post #2

Medtech firms consistently underinvest in corporate network cybersecurity because almost all their security and compliance spending goes to device safety requirements, not IT hardening. This is exactly the kind of gap wiper attacks target.

This was more likely an Intune admin getting phished. Intune has a built-in wipe action: https://learn.microsoft.com/en-us/intune/intune-service/remo....

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#15

Seems dire but hardly a supply chain disrupting attack. Stryker is a huge supplier but it not as if this will debilitate the medical supply chain completely. Seems like the hackers found a door they could kick open easily and then justified the action ex-post.

If they're a primary regional supplier, it could have a huge impact. It doesn't have to break the entire country to matter.

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#16

Earlier quoted context omitted.

yeah that is a lot of tech, but it’s all B2B- no consumer breach, right?

Probably worse in the boring B2B way, not the consumer-breach way. Stryker is deep in hospital operations, so the immediate risk is supply chain and support disruption rather than leaked patient data. The Krebs post says one hospital system already could not order surgical supplies, and if the Intune remote wipe detail is true, recovering internal devices and admin workflows could take a while even without any medica…

so maybe more hospitals shutdown from ransomware attacks coming?
Post reply on HN