logo

Stryker says it’s restoring systems after pro-Iran hackers wiped thousands of employee devices

ID: ac1c857c-3fde-536d-9667-05084236d76f

STIX ID: report--ac1c857c-3fde-536d-9667-05084236d76f

Feed Name: TechCrunch Security News

Threat Score
75/100

Date Published: 2026-03-17

Date Updated: 2026-04-23

Author: Zack Whittaker

...
...

Stryker experienced a March 11 destructive cyberattack attributed to pro‑Iran group Handala that reportedly used access to the company’s Microsoft Intune/admin account to remotely wipe tens of thousands of employee devices, causing major operational disruption. The company says the incident was contained to its internal Microsoft environment and its internet-connected medical products are safe; investigators have found no signs of ransomware or malware, and initial access may have involved phishing or credential‑stealing tools.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.