Live data from Hacker News

Iran-backed hackers claim wiper attack on medtech firm Stryker

krebsonsecurity.com

261–270 of 342 posts

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#261

I wonder if there was some confusion between Stryker the Army infantry vehicle and Stryker the medtech company. It seems a really weird target for Iran otherwise.

Yeah, I had to lookup the names! Stryker the armored vehicle is made by General Dynamics. Striker the fire truck is made by Oshkosh Corporation.

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#263
post #38

Earlier quoted context omitted.

Never use your personal device for work, you wanted to say, probably.

The only maybe grey area is to only us it as authenticator. But yes even then the company needs to provide this, a cheap phone works.

or an even cheaper and less complex (!) hardware token.

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#264

Earlier quoted context omitted.

sure no consumer data breach... but this is still going to shutdown or impact lots of medical facilities. heart rate monitors that go down and no one can get support for, cannot get replacement CAT scan equipment, etc.

This is not true. The hack did not affect Stryker products sold to hospitals and clinics, it only impacted Stryker employees work and personal devices. Yes 50tb of data was exfiltrated and it remains to be seen what that data is and how it might impact products down the line.

Medical equipment reps often play a pretty active role in patient care. Can't get in touch with a rep to put a device into its MRI safe mode? No MRI for you. Can't get a rep in to help the surgeon with the type in hardware they were going to install? No surgery for you.

People's AICDs aren't going to start exploding, but I'm pretty confident this will hamper care for many patients.

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#265

Stryker is far more than ambulance gurneys. They’re one of the largest med-tech suppliers, with equipment in operating rooms, ICUs, and surgical departments everywhere. If a wiper actually hit internal systems, the bigger concern isn’t consumer data but disruption to manufacturing, logistics, and hospital support. That kind of outage could ripple through a lot of hospitals pretty quickly.

Go and switch your suppliers my friends, talk to purchasing now.

Stryker holds monopoly supplier positions for a number of medical products, esp including surgical implants and associated OR tools.

If Stryker stays down, supplies of some things will run out soon and many people will find themselves without medical procedures available.

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#266
post #259

Earlier quoted context omitted.

> Iran's regime has just indiscriminately killed 20-30K innocent civilians and uncountable many have been tortured. That is a crime against humanity. So, the top of Iran's regime and its IRGC has to be punished. I'm fine with that punishment being US and Israel's missiles. Israel's regime has killed twice that many in Gaza. Shouldn't they be prioritized for "punishment"?

As i said the key thing isn't how many, it is who, how and what for. Israel started the war in response to the genocide of Oct 7. So all the legitimate collateral victims and damage from Israel's actions here is responsibility of the perpetrators of Oct 7. You aren't calling for prosecution of the perpetrators of Oct 7. That is already shows your colors. Anyway, the number of killed you cite comes directly from Hamas…

>Israel started the war in response to the genocide of Oct 7. So all the legitimate collateral victims and damage from Israel's actions here is responsibility of the perpetrators of Oct 7.

>You aren't calling for prosecution of the perpetrators of Oct 7. That is already shows your colors.

The world did not start on October 7th, and it's completely disingenuous to suggest otherwise, which shows YOUR colors. I could equally state " all responsibility lies with the perpetrators of the Nakhba".

>Anyway, the number of killed you cite comes directly from Hamas (its Ministry of Health stated those numbers to UN). Hamas is a terrorist org, and can't be trusted at all.

If the number can't be trusted, why is the IDF acknowledging it?

https://www.timesofisrael.com/idf-believes-70000-gazans-kill...

> There is no evidence that Israel killed civilians in any meaningful numbers, and that the killings were criminal and not legitimate collateral.

If this is your position no further discussion is needed. There is nothing meaningful to be gained from engaging with you. I don't know if you guys realize how insane you appear to every other human being on the planet when you try to gaslight us into thinking the piles of evidence of dead women and children either doesn't exist or is somehow accidental.

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#267
post #256

I'm trying to imagine the kind of response the USA would inflict on a country that wiped a girls school stateside.

If we take precedent from other times children in the USA were slaughtered in schools, probably a bit of national grandstanding on either end of the political spectrum then nothing actually material happening.

The key difference is this would be identifiable foreigners doing it.

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#269
post #110

Earlier quoted context omitted.

How does that look exactly? Someone has to be able to use MDM to manage devices or there’s no point in having it. This scenario is firmly in rubber hose/crescent wrench cryptanalysis territory. Can updates have delays with approval gates built in? Does MDM need a break glass capability?

"Principle of least privilege" as MS calls it. Do not use global admin or admin account as daily driver for one. Dont save it in browser etc either. Limit roles, even within the application, here Intune. Office 365 also has conditional access and many policy leavers to tweak, many cases of people locking themselves OUT of 365. So the gates work but you need to configure them. "Break glass" global admin accounts now a…

At the end of the day someone needs remote wipers privs, and in a large company it's something done pretty often.

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#270
post #44
post #29

Earlier quoted context omitted.

I think this refers to "bombing for peace". Sure the West should have just let Iran nuke whoever it wanted.

Nuclear weapons are a MAD red line that will result in total annihilation of the attacker. They are only useful in a defensive capacity. This kind of aggression, however, does seem to make their value as a deterrent clear. Observe how nobody is fucking with North Korea like they did with Iraq or Venezuela.

North Korea's main leverage is not the 3.5 nukes they have, it's Seoul in the sights of their very conventional arty.

Unlike NK, Iran has a leadership that declared destroying some countries their raison d'etre.

Post reply on HN