Download Privacy Needle App

Type to search

Data Breaches News

Abbott Investigates Hack After ShinyHunters Breach Claims

Share
Abbott Investigates Hack After ShinyHunters Breach Claims

Abbott Investigates Cyberattack as ShinyHunters Claims to Have Stolen Sensitive Data

  • Abbott Probes Cyberattack as ShinyHunters Claims Major Data Theft
  • Healthcare Giant Abbott Investigates Hack After ShinyHunters Breach Claims
  • ShinyHunters Targets Abbott in New Cyberattack, Company Launches Investigation
  • Abbott Responds to Cybersecurity Incident Amid Claims of Stolen Medical Data
  • Hackers Claim Abbott Breach as Healthcare Giant Investigates Two Cyber Incidents
  • Abbott Says Operations Safe as ShinyHunters Alleges Sensitive Data Theft

Healthcare giant Abbott Laboratories is investigating two separate cybersecurity incidents after the notorious hacking group ShinyHunters claimed it breached the company’s systems and stole sensitive medical, customer, and business data.

The incidents have drawn significant attention because Abbott is one of the world’s largest medical device and healthcare companies, serving hospitals, laboratories, and healthcare providers across more than 160 countries. While the hackers claim to have accessed confidential information, Abbott says its investigation is ongoing and that there is currently no evidence of operational disruption or exposure of sensitive customer data.

Hackers Claim They Breached Internal Systems

According to cybersecurity reports, ShinyHunters alleges it gained access to Abbott’s internal network after compromising an employee’s Microsoft Entra single sign-on (SSO) account through a sophisticated voice phishing (vishing) attack.

The cybercriminal group claims the intrusion allowed it to obtain medical records, customer information, and internal business data. However, Abbott has not verified those claims, and investigators are still determining what information, if any, was actually accessed.

Abbott Confirms Two Separate Cyber Incidents

Abbott acknowledged that it is responding to two unrelated security events.

The first incident affected parts of its Cancer Diagnostics business, while the second involved unauthorized access to LabCentral, a third-party-hosted portal used by its core laboratory diagnostics division.

The company emphasized that LabCentral primarily stores publicly available technical documentation, including operating manuals and product specifications, and said it has found no known exposure of sensitive customer or proprietary business information through that system.

No Impact on Operations

Despite the hackers’ claims, Abbott says its healthcare operations continue without interruption.

The company stated that manufacturing, diagnostic services, and customer-facing systems remain fully operational. It has also engaged external cybersecurity experts and notified law enforcement as part of its investigation.

Abbott added that it does not currently expect the incidents to have a material impact on its business or financial performance.

Healthcare Firms Remain Prime Targets

The incident highlights the growing cybersecurity risks facing healthcare organizations, which hold vast amounts of sensitive patient and medical data.

Security researchers note that cybercriminal groups such as ShinyHunters increasingly rely on social engineering techniques—including voice phishing—to steal employee credentials and bypass traditional security controls before attempting data theft and extortion.

Investigation Continues

Authorities and cybersecurity experts are continuing to investigate the scope of the incidents and whether any confidential information was actually compromised.

For now, Abbott maintains that customer services remain unaffected and that many of the hackers’ claims have not been independently verified. The company says it will provide additional updates as its investigation progresses.

Watch Our Latest Video
Stay ahead with expert insights on privacy, cybersecurity, artificial intelligence, data protection and compliance.
minnesota fraud crackdown shorts #Minnesota #Fraud #CyberNews #IdentityTheft #Shorts
Published: May 27, 2026
Daily Privacy News
Cybersecurity Updates
Data Protection Tips
GDPR & NDPA Explained
Tags:
Ikeh James Certified Data Protection Officer (CDPO) | NDPC-Accredited

Ikeh James Ifeanyichukwu is a Certified Data Protection Officer (CDPO) accredited by the Institute of Information Management (IIM) in collaboration with the Nigeria Data Protection Commission (NDPC). With years of experience supporting organizations in data protection compliance, privacy risk management, and NDPA implementation, he is committed to advancing responsible data governance and building digital trust in Africa and beyond. In addition to his privacy and compliance expertise, James is a Certified IT Expert, Data Analyst, and Web Developer, with proven skills in programming, digital marketing, and cybersecurity awareness. He has a background in Statistics (Yabatech) and has earned multiple certifications in Python, PHP, SEO, Digital Marketing, and Information Security from recognized local and international institutions. James has been recognized for his contributions to technology and data protection, including the Best Employee Award at DKIPPI (2021) and the Outstanding Student Award at GIZ/LSETF Skills & Mentorship Training (2019). At Privacy Needle, he leverages his diverse expertise to break down complex data privacy and cybersecurity issues into clear, actionable insights for businesses, professionals, and individuals navigating today’s digital world.

  • 1

You Might also Like

Leave a Reply

Your email address will not be published. Required fields are marked *

  • Rating

This site uses Akismet to reduce spam. Learn how your comment data is processed.