Iran-Linked Hackers Claim Responsibility for Wiper Attack on Stryker

An Iranian hacktivist group has taken credit for a significant data-wiping attack on Stryker, a major medical technology firm, leading to widespread disruptions.

4 min readTechnology

A hacktivist collective associated with Iranian intelligence has announced its involvement in a destructive cyberattack targeting Stryker, a prominent medical technology company headquartered in Michigan. Reports indicate that Stryker, which employs over 56,000 people globally, has temporarily sent home more than 5,000 employees from its Irish facility, the largest outside the U.S. The attack reportedly compromised over 200,000 devices, including servers and mobile phones, forcing Stryker's operations across 79 countries to halt. The group, known as Handala, claims the attack was a response to a recent missile strike in Iran that resulted in numerous casualties, primarily among children. They assert that the data obtained from the attack will be used to advance humanitarian efforts and reveal corruption. The attack utilized Microsoft Intune to execute remote wipes on connected devices, raising concerns about the implications for healthcare supply chains, as Stryker is a key supplier for hospitals. While some healthcare professionals report disruptions, the American Hospital Association has not confirmed any immediate impacts. This situation is evolving, and further updates are anticipated.

Technology