惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Martin Fowler
Martin Fowler
D
DataBreaches.Net
F
Fortinet All Blogs
阮一峰的网络日志
阮一峰的网络日志
博客园_首页
Apple Machine Learning Research
Apple Machine Learning Research
H
Help Net Security
M
MIT News - Artificial intelligence
美团技术团队
人人都是产品经理
人人都是产品经理
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
The Cloudflare Blog
有赞技术团队
有赞技术团队
L
LangChain Blog
博客园 - Franky
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
博客园 - 【当耐特】
S
SegmentFault 最新的问题
V
Visual Studio Blog
Blog — PlanetScale
Blog — PlanetScale
Hugging Face - Blog
Hugging Face - Blog
B
Blog
I
InfoQ

The Register - Security: Cyber-crime

Election interlopers register 5K+ domains, hope to catch some voting phish Palo Alto VPN bug graduates from advisory to active exploitation ShinyHunters adds Charter to trophy shelf after 4.9M customer records leak Carnival confirms ShinyHunters cruised off with 6M customer records after April breach CrowdStrike, Google shatter Glassworm botnet MyPillow must decide whether to be firm or soft as ransomware crims demand pay A Russian speaker and jailbroken Gemini went on a hacking spree and emptied at least one MAGA victim's crypto wallets Shai-Hulud copycat worm infects yet another npm package Grafana Labs admits all its codebase are belong to someone who popped its GitHub account Nobody believes the 'criminals and scumbags' who hacked Canvas really deleted stolen student data Malware crew TeamPCP open-sources its Shai-Hulud worm on GitHub Foxconn confirms cyberattack after ransomware crew claims it stole confidential Apple, Nvidia files Cache-poisoning caper turns TanStack npm packages toxic 'CopyFail' attackers start cashing in on Linux flaw Cushman & Wakefield confirms vishing cyberattack ShinyHunters claims dump puts 119K Vimeo emails in the wild ShinyHunters claims 119K Vimeo emails in the wild Critical cPanel exploited: 'Millions' of sites could be hit Pro-Iran group turns Ubuntu DDoS into shakedown French prosecutors link 15-year-old to gov mega-breach UK business breach rate stuck at 43%... blame the phishing What type of 'C2 on a sleep cycle' do they leave behind? Novel Chinese spy group found in critical networks in Poland, Asia Chinese spy group caught lurking in Poland, Asia networks Don’t pay VECT a ransom - your big files are likely gone Pitney Bowes the latest victim of ShinyHunters’ breach-spree Ongoing supply-chain attack targets security, dev tools Medical and utility tech companies admit digital breakins Burglar alarm biz gets burgled, ShinyHunters pursues ransom Crime crew impersonates help desk, abuses Teams chats ShinyHunters claim they have cruise giant Carnival’s booty
Robotics surgical biz Intuitive discloses phishing attack
Jessica Lyons Jessica Lyons · 2026-03-17 · via The Register - Security: Cyber-crime

Cyber-crime

Operations and hospital networks not affected, we're told

Robotics-assisted surgical tech firm Intuitive said that unauthorized intruders gained access to some of its internal IT business applications after stealing an employee's credentials during a phishing attack.

Intuitive's statement on the cybersecurity incident doesn't indicate when the attack occurred or when the company discovered it. The Register has reached out to Intuitive about these and other questions, and we will update this story as soon as we receive any response.

Stolen data includes some customer business and contact information, along with Intuitive employee and corporate data, according to the statement. 

The company said that the cyber intrusion had no operational impact on its platforms or the hospitals that use its robotic systems. Intuitive makes robotic-assisted surgical platforms, and its main products include the da Vinci surgical systems and the Ion endoluminal system for lung biopsies. 

"There has been no impact on our operations or the work we do to support our customers," the company added. "Our robotic systems have their own security protocols and operate independently of our internal business network."

Intuitive said that it segments its network infrastructure, and all of the infrastructure supporting its internal IT business systems, manufacturing operations, and digital products remain separate. Because of this network segmentation, the company's da Vinci, Ion, and digital platforms were not affected by the breach, and "continue to be safe and operational," according to the statement.

"Hospital customer networks remain separate from Intuitive networks and are secured and managed by customers' IT teams, therefore they are also unaffected," it added.

Upon discovering the intrusion, Intuitive says it took "immediate action" to contain the breach and begin an investigation, which remains ongoing. It also notified data privacy regulators, and pledged to share updates as the investigation continues.

The timing is noteworthy in that the Intuitive breach follows a cyberattack against another medical-tech company last week. On Wednesday, Stryker, which makes orthopedic implants, surgical equipment, and other medical devices, disclosed a breach in which miscreants gained access to its internal Microsoft environment.

Handala, a hacktivist crew believed to be a front for the Ministry of Intelligence and Security (MOIS), claimed to be responsible for the incident.

At publication time, no one had yet claimed the Intuitive attack. And in a Friday update to its Iran-war cyberthreat advisory, Cisco's Talos said that the Stryker digital intrusion "likely does not indicate that the health care sector is at any higher or specific risk of targeting by Iran-linked threat actors. We make this assessment with high confidence based on our understanding of the motivation and capability of threat groups like Handala, which have historically compromised targets of opportunity."

The threat hunters noted that they have not seen any recent increase in "systematic or elevated targeting of health care or health care-adjacent sectors over any other industry."

The Intuitive attack does, however, indicate that cybercriminals continue to use tried-and-true methods to gain initial access to victims' environments, Ensar Seker, chief information security officer at security company SOCRadar, told The Register.

"Even highly advanced technology companies can be compromised when a single credential is exposed, because identity systems are now the primary gateway into corporate infrastructure," Seker said. "Phishing remains effective because it targets people rather than technology. Security controls around software vulnerabilities have improved dramatically over the past decade, but social engineering continues to exploit human trust, urgency, and routine workflows." ®