logo

CISA urges US orgs to secure Microsoft Intune systems after Stryker breach

ID: 25488289-fd5f-5710-a17b-a81433a5a4fb

STIX ID: report--25488289-fd5f-5710-a17b-a81433a5a4fb

Feed Name: Bleeping Computer

Threat Score
85/100

Date Published: 2026-03-19

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

CISA warned U.S. organizations to harden Microsoft Intune after an Iranian-linked hacktivist group, Handala, claimed responsibility for breaching Stryker—allegedly stealing ~50 TB of data and using a newly created Global Administrator account to issue Intune's built-in wipe, affecting nearly 80,000 devices; Microsoft and CISA recommend RBAC, MFA, privileged-access hygiene, and multi-admin approval for sensitive actions to mitigate such attacks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.