McKesson Copes with Fallout From Data Theft Extortion Attack
ShinyHunters says it stole millions of patient records and demanded $55 million, while McKesson said distribution centers remain operational.
- On Friday, pharmaceutical giant McKesson confirmed a data breach involving unauthorized access to its cloud-hosted Snowflake and Salesforce environments, noting "intermittent service degradation" while distribution centers remain operational.
- Attackers from the hacking group ShinyHunters claimed responsibility, telling TechCrunch they gained network access by tricking employees through voice phishing to steal sensitive data for extortion.
- Hackers allege they compromised more than 284 million records including Social Security numbers and medical diagnoses, while demanding a $55.2 million ransom that McKesson has not confirmed.
- Francisco Fraga, McKesson's chief information officer, stated the firm has "reasonable assurance" that unauthorized intruders were removed, though the company has yet to identify affected individuals.
- This incident marks the latest in a string of cyberattacks on healthcare companies including Boston Scientific and Medtronic, as campaigns targeting vendor-hosted environments strain patient data security across North America.
11 Articles
11 Articles
McKesson copes with fallout from data theft extortion attack
The major healthcare sector vendor did not identify the attackers, but ShinyHunters, a prolific group increasingly targeting the sector, claimed responsibility. The post McKesson copes with fallout from data theft extortion attack appeared first on CyberScoop.
Hackers claim millions of patient records stolen during data breach at healthcare giant McKesson
The company, which distributes medicines and medical devices to hospitals and healthcare practices across the U.S., said it was hacked and expects intermittent service degradation.
ShinyHunters claims it stole 284 million patient records from McKesson - Help Net Security
McKesson is a major U.S. healthcare company that distributes pharmaceuticals, medical supplies and other healthcare products to pharmacies, hospitals and clinics. According to the SEC filing, the intrusion was detected on August 25, 2026. The company said the investigation “is in its early stages,” and that it has not determined the incident is material or […] Källa
An intrusion into several cloud-hosted McKesson accounts would have allowed millions of rows to be drawn with medical and personal information. ShinyHunters claimed responsibility for the attack and, according to a report quoted by TechCrunch, demanded $55 million to avoid disclosing the files.
McKesson confirms cyber incident after ShinyHunters claims patient-data theft
Healthcare and pharmaceutical-distribution giant McKesson has disclosed a cybersecurity incident involving unauthorized access to third-party applications and the theft of data. McKesson Corporation is an American healthcare company that distributes pharmaceuticals and provides medical supplies, health information technology, and care management tools. McKesson says it discovered the cybersecurity incident on August 25, 2026, and that
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium










