Hackers used malicious file to hide activity in Stryker systems

Advertisement

Stryker said a threat actor used a malicious file to conceal activity within its systems following a cyberattack that began March 11.

The medical technology company, which first disclosed the cyberattack earlier this month, said it has since contained the incident and removed the unauthorized party from its environment, according to a March 23 update posted to its website. The attack disrupted Stryker’s Microsoft environment and caused a global network outage.

Stryker said its investigation, conducted with Palo Alto Networks Unit 42 and other third-party experts, found the attacker used a malicious file to run commands and hide activity while inside its systems. The company emphasized the file was not capable of spreading within or beyond its environment.

The company added there remains no evidence the threat actor accessed or targeted customers, suppliers, vendors or partners. Findings from Unit 42, included in a general assurance letter referenced in the update, also did not identify any access to external stakeholder systems.

Stryker said it initially believed the incident did not involve ransomware or malware but later determined the attacker used the malicious file as part of the intrusion.

Restoration efforts are ongoing, with teams working “around the clock” alongside external partners to bring systems back online. The company said it is prioritizing systems that support customers as well as ordering and shipping functions.

Stryker said operations are stabilizing as manufacturing capacity ramps up and critical production lines and facilities are brought back online, with patient needs taking priority.

The company said it continues to work closely with government agencies and industry partners as it responds to the incident.

At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.

Register to Attend Webinar

The hidden cost of lost clinical time and how leading health systems are responding

Friday, August 7
12:00 PM - 1:00 PM CDT

Presenters: Kassaundra McKnight-Young, Zebra TechnologiesGregory Carras, Zebra TechnologiesJennifer Gene, Levata

Advertisement

Next Up in Cybersecurity

Advertisement