Abbott probes two cyber incidents amid extortion claims

July 18, 2026 1 Min Read 0

Threat Intelligence Brief

Curated summary with source attribution

Source: bleepingcomputer.com

Threat Risk: High
Victim: Abbott Laboratories
Incident: Unauthorized access to internal legacy systems and alleged theft of customer data.
Impact: Potential exposure of over 30 million rows of customer PII, including Social Security numbers.
Attacker: ShinyHunters
Analysis: The threat actor ShinyHunters utilized vishing attacks to compromise Microsoft Entra SSO accounts, allowing them to pivot into internal legacy systems and connected SaaS applications. This incident reflects a broader campaign by the group targeting medical technology firms through sophisticated social engineering to bypass identity providers. While Abbott maintains that core operations remain unaffected, the scale of the alleged data exfiltration is significant.
Recommendations: Deploy phishing-resistant MFA, such as FIDO2 security keys, to prevent SSO account hijacking.; Conduct specialized vishing awareness training for employees with access to sensitive internal portals.; Perform a comprehensive audit of permissions and access controls for legacy systems and integrated third-party SaaS apps.
Source: BleepingComputer

Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source

Leave a Reply

Your email address will not be published. Required fields are marked *