Iran-Backed Hackers Claim Wiper Attack on Medtech Firm Stryker
2026-03-18T13:23:31Z•1cfc213953a4f21e2cded6d0c36e70da0c41133c91d3639768302c15af62b64b
ai-assistantsbadboxbotmaster-dortddosextortioni2p-disruptioninsider-riskiot-botnetiran-linkedkimwolfmedtechmfa-bypassmicrosoftpatch-tuesdayphishing-as-a-servicescattered-lapsusstarkillerstrykerswattingvulnerabilitieswiper
What happened
Multiple high-impact security developments: an Iran-linked hacktivist group claims a destructive wiper attack against medtech firm Stryker causing major operational disruption; Microsoft released its March 2026 Patch Tuesday addressing 77 vulnerabilities (no widely reported new zero-days this month); a new phishing-as-a-service called “Starkiller” proxies real login pages and relays credentials and MFA codes to bypass protections; and the massive Kimwolf IoT botnet (≈2M devices) continues to drive large-scale DDoS, disrupt the I2P anonymity network, and is tied to takeover activity against Bad
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- krebs_on_security
- Record identifier
- 1cfc213953a4f21e2cded6d0c36e70da0c41133c91d3639768302c15af62b64b
- Enrichment time
- 2026-03-18T13:23:31Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.