Threat Intelligence Brief
Curated summary with source attribution
Source: courthousenews.com
Threat Risk: High
Victim: Healthcare and diagnostics providers
Incident: A ransomware and data exfiltration attack targeting patient records.
Impact: Exposure of over 30 million rows of sensitive personal and medical data.
Attacker: ShinyHunters
Analysis: The threat actor ShinyHunters utilized vishing to bypass security and compromise Microsoft Entra SSO accounts. This allowed them to exfiltrate over 30 million rows of customer data from Abbott Laboratories and its subsidiaries. The incident highlights the critical vulnerability of identity providers to human-centric social engineering attacks.
Recommendations: Implement phishing-resistant MFA such as FIDO2 security keys; Conduct targeted employee awareness training on vishing and social engineering; Audit and restrict administrative privileges within SSO environments
Source: Courthouse News Service
Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source