McKesson confirms cyber incident after ShinyHunters claims patient-data theft
ID: 6991291e-b392-547c-b975-ba4821475330
STIX ID: report--6991291e-b392-547c-b975-ba4821475330
Feed Name: Malwarebytes Blog
Threat Score
McKesson disclosed an ongoing cybersecurity incident after detecting unauthorized access to certain third‑party applications affecting customers in its Oncology & Multispecialty and Medical‑Surgical units; the extortion group ShinyHunters claims it used vishing to obtain Okta SSO credentials, accessed Salesforce and Snowflake, and exfiltrated roughly 1 TB of data (claimed ~284 million records), though McKesson has not yet confirmed the scope or specific data types.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
