Loading...
Loading...
Recent disclosures highlight intensifying cyber pressure on companies that underpin critical services. Utility-technology provider Itron and medical-device maker Medtronic reported unauthorized access in SEC filings, with both stressing that customer-hosted, manufacturing, and patient-facing or product systems were not impacted—underscoring the common segmentation between corporate IT and operational/product networks. Medtronic’s incident was linked to extortion group ShinyHunters, which claimed theft of more than 9 million records and set a ransom deadline as the firm assesses potential personal data exposure. ShinyHunters’ broader campaign continues, with Have I Been Pwned confirming a separate ADT breach affecting 5.5 million people.
More than 119,000 Vimeo user email addresses were exposed after the ShinyHunters cybercrime group dumped data it says came from a breach tied to third‑party analytics vendor Anodot. Have I Been Pwned counted 119,000 unique emails, some paired with names; Vimeo confirmed data was taken but said no video content, valid login credentials, or payment card data were included. ShinyHunters claims deeper access to Snowflake and BigQuery instances via Anodot and said negotiations to avoid the dump failed. Vimeo says it disabled Anodot credentials, removed the integration, and engaged external security and law enforcement while investigating. The incident highlights supply‑chain risk from vendor compromises and the phishing/credential misuse threat from leaked email lists.
Two major tech suppliers — utility-technology firm Itron and medical-device giant Medtronic — disclosed unauthorized intrusions in Friday SEC filings. Itron said it detected a breach on April 13, engaged law enforcement and external cybersecurity advisors, and removed the activity; it reported no customer-hosted system impact and expects insurance to cover much of the direct costs. Medtronic acknowledged an unauthorized party accessed corporate IT systems after extortion group ShinyHunters claimed to have stolen over 9 million records and set a ransom deadline; Medtronic said its product, manufacturing and patient-facing systems were unaffected and is investigating potential personal data exposure. The incidents underscore persistent cyber risk to critical-technology suppliers and the operational separation of corporate and product networks.
Sergiu Gatlan / BleepingComputer : Have I Been Pwned: ShinyHunters' breach of ADT exposed the personal data of 5.5M people; ADT previously disclosed data breaches in August 2024 and October 2024 — The ShinyHunters extortion group stole the personal information of 5.5 million individuals after breaching the systems …
Critical infrastructure giant Itron says it was hacked