Iran-Backed Hackers Claim Wiper Attack on Medtech Firm Stryker
2026-03-15T13:23:32Z•2a3c4275f43dec29e063732e699d83f50ccc21649438e5935f61b8491ef3d401
AI assistantsBadbox 2.0DDoSI2PIoT botnetIran-backedKimwolfMFA bypassMicrosoft Patch TuesdayScattered Lapsus ShinyHuntersStarkillerStrykerautonomous agentsbotnetcredential theftdoxinginsider threatmedtechnation-statephishingphishing-as-a-serviceswattingvulnerabilitieswiperzero-day
What happened
Feed of KrebsOnSecurity articles reporting multiple active and emerging threats: an Iran-linked group claims a destructive wiper attack against medtech firm Stryker (large disruption in Ireland); Microsoft’s March 2026 Patch Tuesday addressing ~77 flaws (no new widespread zero-days this month); analysis of how AI assistants/agents shift insider-threat and security models; detailed coverage of the massive Kimwolf IoT botnet (2M+ devices), its botmaster “Dort”, DDoS activity and disruption of the I2P anonymity network, and evidence Kimwolf is present in corporate and government networks; a new ‘
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- krebs_on_security
- Record identifier
- 2a3c4275f43dec29e063732e699d83f50ccc21649438e5935f61b8491ef3d401
- Enrichment time
- 2026-03-15T13:23:32Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.