Signature Healthcare hit by cyberattack, services and pharmacies impacted

2026-04-08T14:52:20Zf36b6ddb7de9bcce2c0f1f4a766120e3bd3fa3a2728068fc2dd9a77228874541
AI for securityBlueHammerCISA KEVCVE-2025-59528CVE-2026-35616Claude MythosDPRK phishingFlowiseFortinet FortiClient EMSGPU exploitGPUBreachGitHub C2Iran-linked APTMedusaOT/ICSPLCsStorm-1175healthcare breachprivilege escalationransomwarezero-day

What happened

Feed of multiple high-risk cyber incidents and advisories: a cyberattack disrupted Signature Healthcare operations and pharmacies; attackers are actively exploiting a critical Flowise RCE (CVE-2025-59528, CVSS 10) to achieve remote code execution and file system access; U.S. agencies warn Iran-linked actors are scanning/exploiting internet-exposed Rockwell/Allen-Bradley PLCs targeting critical infrastructure; Storm-1175 (China-linked) rapidly weaponizes newly disclosed flaws to deploy Medusa ransomware; GPUBreach research demonstrates GPU memory bit-flip attacks enabling privilege escalation/​

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
f36b6ddb7de9bcce2c0f1f4a766120e3bd3fa3a2728068fc2dd9a77228874541
Enrichment time
2026-04-08T14:52:20Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.