Healthcare

Industry

Ransomware Attack at Medical Device Maker, Designs for Vision

October 11, 2025

Bohemia, New York-based custom medical manufacturer, Designs For Vision Inc., suffered a ransomware attack in October and discovered it in December.
On November 3, the ransomware group Akira claimed responsibility for the attack on Designs for Vision, Inc., a leading optical solutions provider based in the United States.
As a result of the hack, the attackers threatened to release 50GB of sensitive data unless their demands end up met. “We will upload about 50gb of corporate documents soon,” Akria attack group said on a web page regarding the Designs for Vision attack. “Lots of project information, a bit of personal information, credit cards de tails and other financial and accounting information, contracts and agreements, NDA, etc.”
Designs For Vision experienced the attack between October 11, 2025, and October 13.

read more

Dental Product Maker, Ergonomic Products, Hit In BEC

October 2, 2024

Fall River, Massachusetts-based dental equipment manufacturer, Ergonomic Products, Inc., suffered a business email compromise (BEC) where attackers were able to make off with personally identifiable information.
“On November 11, 2024, we discovered suspicious activity potentially related to an employee email account,” Ergonomic Products said in a letter to victims. “Upon discovery, we took action to secure our email system and network. We then began working with third-party computer specialists to investigate the full nature and scope of the incident.”
The company added based on its investigation, researchers were able to determine one employee’s email account was subject to unauthorized access between October 2, 2024 and November 11, 2024.

read more

Medical Device Maker, Artivion, Suffers Ransomware Attack

November 20, 2024

Kennesaw, Georgia-based medical device maker, Artivion, Inc. just finished an investigation into a ransomware attack where a threat actor gained access to its network and forced the company to shut down systems.
“Upon learning of the incident, Artivion immediately initiated its incident response protocols, including shutting down systems as a protective measure, and began an investigation with outside cyber experts,” the company said in a letter to victims. “The investigation determined that an unauthorized third-party gained access to Artivion’s network between November 20 and November 21, 2024, and obtained certain files.”
Artivion said it conducted a detailed review and analysis of the files involved to identify individuals whose information was a part of the attack. It also had to confirm victims’ contact information. The attack had an impact on its operations including disruptions to some order and shipping processes, as well as to certain corporate operations.

read more

Medical Researcher, Manufacturer, Inotiv, Suffers Cyberattack

August 5, 2025

West Lafayette, Indiana-based Inotiv, Inc., a medical researcher and maker of products, suffered a cyberattack in August and is now letting victims know their personally identifiable information ended up stolen.
Inotiv, Inc. (“Inotiv”) is a contract research organization that provides nonclinical and analytical drug discovery and development services and research models and related products and services.
“On August 5, 2025, we detected unusual activity on certain Inotiv systems and promptly initiated an investigation,” the company said in a notice to victims of the attack. “On August 8, 2025, we determined that this unusual activity was due to unauthorized actions by a threat actor.”

read more

Medical Instrumentation Maker, Cytek Biosciences, Suffers Cyberattack

November 1, 2025

Fremont, California-based medical instrumentation maker, Cytek Biosciences, Inc., suffered a cyberattack in November which resulted in threat actors stealing personally identifiable information in the hack.
“Cytek Biosciences experienced a data security incident involving unauthorized access to certain of our systems that occurred on or around November 1, 2025,” the company said in a letter to victims. “Based on our investigation, we learned on or around November 28, 2025, that, in connection with this issue, an unauthorized party obtained certain of your personal information.”
The information varied by affected individual and may have included, to the extent provided to Cytek, name, contact information (e.g., postal address, email address, and phone number), date of birth, Social Security number, driver’s license number, government-issued ID number, citizenship status, signature, health and medical information, financial account and compensation information, as well as Cytek employee account username and password.

read more

Medical Supplier, Inotiv, Suffers Cyberattack

August 5, 2025

West Lafayette, Indiana-based medical supplier Inotiv, Inc. suffered a cyberattack in August where personally identifiable information ended up stolen.
“On August 5, 2025, we detected unusual activity on certain Inotiv systems and promptly initiated an investigation,” the company said in a letter to victims of the attack. “On August 8, 2025, we determined that this unusual activity was due to unauthorized actions by a threat actor. Our investigation determined that between approximately August 5-8, 2025, a threat actor gained unauthorized access to Inotiv’s systems and may have acquired certain data.”

read more

Fortune 500 Dialysis Service Provider Hit by Ransomware Attack

April 12, 2025

Dialysis service provider, DaVita, reported on April 14, 2025 that it discovered a ransomware attack encrypting part of its network. DaVita became aware of the incident on April 12, 2025 and immediately implemented response protocols to isolate the impacted systems. Despite the attack impacting some operations, patient care continues. DaVita reported it “cannot estimate the duration or extent of disruption at this time,” in its SEC regulatory filing.

The Interlock ransomware gang has claimed the cyberattack and leaked data allegedly stolen from the organization. According to the gang’s claim, they have around 1.5 terabytes of data or nearly 700,000 files of what appear to be sensitive patient records, information on user accounts, insurance, and even financial details.

DaVita is a Fortune 500 kidney care provider with more than 2,600 U.S. dialysis centers, 76,000 employees in 12 countries, and an annual revenue exceeding $12.8 billion.

read more

Swiss Global Solutions Provider Ascom Confirms Cyberattack

March 16, 2025

Swiss global solutions provider Ascom has confirmed a cyberattack on its IT infrastructure. HellCat hacking group claimed the attack and told BleepingComputer that they stole about 44GB of data that may impact all of the company’s divisions. Ascom says that the hackers compromised its technical ticketing system, the incident had no impact on the company’s business operation

Ascom is a telecommunications company with subsidiaries in 18 countries focusing on wireless on-site communications.

read more

Ransomware Attack takes Hospitals Offline Across Romania

February 11, 2024

The Romanian national cybersecurity agency (DNSC) has pinned the outbreak of ransomware cases across the country’s hospitals to an incident at a service provider. The service provider operates the Hipocrate Information System (HIS) – a multipurpose healthcare management platform used by hospitals across the country. All hospitals caught up in the ransomware scourge are thought to have been breached via the HIS.

The scale of the ransomware emergency in Romania is bordering on the unbelievable as now more than 100 hospitals have been either disconnected from the internet or had their files encrypted. The hackers demanded 3.5 Bitcoin, worth over £130,000, to unlock important files that they had encrypted. However, Romanian cyber officials confirmed that data had recently been backed up, minimizing the impact.

read more

Black Basta Attack Disrupts Ascension Hospital Network

May 8, 2024

Ascension, one of the largest hospital networks in the USA, suffered a BlackBasta ransomware attack. The hackers encrypted digital systems throughout the 19-state health system operations, leading hospitals to disconnect their networks and revert to manual operations and work-arounds.

read more