惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Recent Announcements
Recent Announcements
J
Java Code Geeks
U
Unit 42
GbyAI
GbyAI
大猫的无限游戏
大猫的无限游戏
L
LangChain Blog
D
Docker
F
Fortinet All Blogs
N
Netflix TechBlog - Medium
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
罗磊的独立博客
I
InfoQ
The Cloudflare Blog
小众软件
小众软件
V
Visual Studio Blog
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Engineering at Meta
Engineering at Meta
S
SegmentFault 最新的问题
爱范儿
爱范儿
Hugging Face - Blog
Hugging Face - Blog
P
Proofpoint News Feed
V
V2EX
月光博客
月光博客
Martin Fowler
Martin Fowler

GovInfoSecurity.com RSS Syndication

On Demand | Regulation Didn’t Change, Your Identity Landscape Did On Demand | Weaving Agentic AI into the SOC: A Practical Playbook for Operationalizing and Scaling Autonomy Why Periodic Pentesting Can’t Keep Up And What Security Leaders Are Doing Instead Claude Mythos 5 Can Build Exploits But Can't Power Campaigns AI Is Reshaping Cybersecurity Training Priorities Health Cyberthreat Sharing Is Advancing But Gaps Persist Are Small Models Closing the Gap on Frontier AI Cyber Tools? Government info security news, training, education Government info security news, training, education Government info security news, training, education Government info security news, training, education Beyond the Inbox: Defending Against AI-Enabled Social Engineering Webinar | 6 Layers Standing Between Your Enterprise and AI Risk Webinar | 6 Layers Standing Between Your Enterprise and AI Risk Webinar | Securing the Agentic Enterprise: An Integrated Policy Framework for Enterprise AI Security How AI Governance Protects Patient Care and Sensitive Data Why Hospitals Must Rethink Cyber Resilience The Privacy Risks of Embedded, Shadow AI in Healthcare Why Election Systems Are Now a Persistent Cyber Target Anthropic Submits Pre-IPO SEC Filing, Leads Market Cap Fight AI Agents Are the New Insiders Demystifying Claude: Signal vs. Speculation German Court: Google Liable for AI Summaries DOJ, FBI Seize 13 Domains in Chinese Recruitment Op A Security Gets $37M to Thwart Weaponized AI With Automation Breach Roundup: CISA Says Agencies Should 'Patch Smarter' Google Sues Chinese Phishing Service Over Gemini Abuse Policy as Code: From Documents to Machine Intelligence Anthropic Limits on OT Access to Mythos Draw Criticism
Ozempic Drug Maker Loses Clinical Trial Data in Hack
Marianne Kolbasuk McGee · 2026-06-13 · via GovInfoSecurity.com RSS Syndication

Cybercrime , Data Breach Notification , Data Security

Novo Nordisk Breach Involved 'Copying' of Patient, Healthcare Provider Info (HealthInfoSec) • June 12, 2026    
Ozempic Drug Maker Loses Clinical Trial Data in Hack
A hack on Danish pharmaceutical manufacturer Novo Nordisk has compromised some patients' clinical trial data and healthcare provider information. (Image: Shutterstock)

A hack on Danish pharmaceutical manufacturer Novo Nordisk has affected some patient clinical trial data and healthcare provider information, according to the maker of popular weight loss and diabetes treatment drugs, including Wegovy and Ozempic.

See Also: OnDemand | Transform API Security with Unmatched Discovery and Defense

Novo Nordisk said Thursday it "recently" discovered an IT security incident involving unauthorized access "to a limited number of internal IT systems." The breach affected personal data stored on the company's systems, including some information related to patients participating in various clinical trials.

Some of the affected "non-public" data was copied externally without authorization, the company said.

The pharmaceutical manufacturer didn't identify the nature of the clinical trials or disclose the number of affected people, but said the compromised information didn't include patient names or "other direct identifiers."

Categories of potentially affected patient data included "random alphanumeric string" patient IDs, sex, year of birth, biomarkers, health and immunogenicity data, and lifestyle factors, such as smoking status, alcohol use and body mass index.

"Based on the nature of the exposed data as pseudonymized, knowledge of patient identity would require access to further information, which was not part of the incident. We therefore do not consider the incident to bear any immediate risks for our patients," the company said.

"We do, however, recommend that our patients remain vigilant and report to us if anything unusual is encountered that is believed could be linked to the incident."

Novo Nordisk is also notifying an undisclosed number of healthcare providers that their information was potentially affected in the incident. That includes name and registration number, email, phone number, WhatsApp details, and office location. "The exposure of your data does not necessarily include all categories," the company said.

Novo Nordisk is working with forensics experts in investigating into the incident. The company said it temporarily took offline certain internal systems as a precaution and is working to bring its affected IT systems back online.

"Our core business operations are not impacted and remain up and running," the company said.

Novo Nordisk did not immediately respond to ISMG's request for additional details about the incident.

The biggest concern in this incident so far "is the long-tail value of clinical trial data," said Ross Filipek, CISO at IT services firm Corsica Technologies. "Even though the data was allegedly not tied to patient names, health-related data comes with different risks than ordinary consumer information. It can become more sensitive when it's combined with other stolen data from outside sources."

Another worry in such incident is broken trust, Filipek said. "Clinical trials rely on confidence from patients, providers, regulators and research partners. Even a limited breach can create hesitation if people worry their health information was exposed or mishandled. If attackers had enough dwell time to alter data, not just copy it, the company would also need to look closely at data integrity."

Filipek said the Novo Nordisk incident also underscores that attacks on pharmaceutical companies also threaten critical research and related data beyond patient records. "If any intellectual property was exposed, the impact could move beyond privacy and into competitive harm. If active trial systems were affected, some work may need to pause while investigators confirm what was accessed and whether anything was altered," he said.