logo

FBI, CISA warn on Microsoft Intune risks after Iran-linked cyberattack on Stryker

ID: 61681959-0fe6-579d-b11d-1cd246d203f3

STIX ID: report--61681959-0fe6-579d-b11d-1cd246d203f3

Feed Name: The Record from Recorded Future News

Threat Score
85/100

Date Published: 2026-03-19

Date Updated: 2026-05-01

...
...

Federal cybersecurity agencies (CISA and the FBI) confirmed response to a destructive cyberattack on Stryker in which the Handala group — alleged to be Iran-linked — abused Microsoft Intune device management to remotely wipe more than 200,000 devices across multiple countries; agencies issued advisories urging Intune hardening (RBAC, MFA, Entra ID, approval controls) and federal authorities seized a Handala-linked website.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.