Iran-Backed Hackers Claim Wiper Attack on Medtech Firm Stryker
2026-03-14T19:23:26Z•2e505ed7d61f69fcf8a084026c0adb8a52f00e6fcbb42dce5142cda83850a8e9
AI assistantsBadbox 2.0DDoSDort (botmaster)I2P disruptionIoT botnetIran-linkedKimwolfMFA relayMicrosoft Patch TuesdayScattered Lapsus ShinyHuntersStarkillerStrykerautomation riskbotnetcredential theftdata extortioninsider/agent threatsmedtechnation-statepatch managementphishing-as-a-servicevulnerabilitieswiperzero-day
What happened
Feed of KrebsOnSecurity posts highlighting multiple high-risk incidents and trends: an Iran-linked hacking group claims a wiper attack against medtech firm Stryker (disrupting operations), a stealthy phishing-as-a-service called “Starkiller” that proxies real login pages and relays MFA, and the rapidly expanding Kimwolf IoT botnet (2M+ devices) disrupting I2P and infiltrating corporate/government networks. Microsoft’s March 2026 Patch Tuesday fixes ~77 vulnerabilities (no new widely reported zero-days this month), and earlier February patches addressed multiple zero-days. Other items cover the
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- krebs_on_security
- Record identifier
- 2e505ed7d61f69fcf8a084026c0adb8a52f00e6fcbb42dce5142cda83850a8e9
- Enrichment time
- 2026-03-14T19:23:26Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.