logo

Iran-Linked Hacktivists Hit Stryker, Knocking Employees Offline Across Multiple Countries

ID: 7df19406-da7b-5016-8928-aefe1c9874ba

STIX ID: report--7df19406-da7b-5016-8928-aefe1c9874ba

Feed Name: TechRepublic Security

Threat Score
75/100

Date Published: 2026-03-12

Date Updated: 2026-04-23

Author: Ken Underhill

...
...

A suspected Iran-linked hacktivist group, Handala, claims to have infiltrated Stryker’s network on March 11, exfiltrating data and deploying destructive wiper activity that reportedly resulted in mass MDM-driven device wipes, defacement of the Microsoft Entra portal, and operational outages across the company’s global Microsoft environment; employees in multiple countries reported remote resets and loss of access to internal systems. Stryker has acknowledged widespread disruption but says it has found "no indication of ransomware or malware" to date and is working with external cybersecurity experts to investigate and restore services.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.