DeFi Daily News
Saturday, May 23, 2026
Advertisement
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
No Result
View All Result
Home DeFi Metaverse

rewrite this title Stryker Cyberattackers Used Microsoft Intune to Wipe Thousands of Devices – UC Today

Kristian McCann by Kristian McCann
March 17, 2026
in Metaverse
0 0
0
rewrite this title Stryker Cyberattackers Used Microsoft Intune to Wipe Thousands of Devices – UC Today
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on Telegram
Listen to this article


rewrite this content using a minimum of 1000 words and keep HTML tags

The reported cyberattack against Stryker last week is believed to have used Microsoft Intune to remotely wipe thousands of corporate devices, a source told BleepingComputer.

Claimed by hacktivist group Handala, the attackers said they wiped more than 200,000 servers, mobile devices, and other systems, forcing the company to shut down offices across 79 countries. The hacktivists also claimed they exfiltrated about 50 TB of corporate data from the company’s infrastructure.

Stryker, a multinational medical device and equipment manufacturer, said investigators did not find any indication that data was exfiltrated. It also emphasized that the incident was not a ransomware attack and that the threat actor did not deploy any malware on its systems.

How the Attack Played Out

Cybersecurity Dive reported that Halcyon researchers found the Stryker attack impacted all phones and workstations with an Intune Base64 string. Intune is normally used to push software or manage devices through Base64 encoding, according to the researchers.

The attackers reportedly used encoded commands to trigger remote wipes on all devices tied to the company’s Intune environment.

The commands executed during the attack appear to have deleted critical data from phones and workstations. Analysts stressed that Intune itself was not breached; rather, the attackers appeared to have obtained administrative access to the platform, allowing them to use its built-in capabilities for destructive purposes.

High-level privileges, such as Intune administrator or global administrator accounts, would have been necessary to execute the wipes. Researchers say this points to credential theft or privilege escalation as a likely step in the attack chain.

Stryker is working with external forensic experts, and the Cybersecurity and Infrastructure Security Agency is assisting with investigations to learn more about the attack.

What Intune Users Should Do

For organizations using Intune or similar endpoint management tools, the Stryker incident is a reminder of the risks tied to administrative access.

Security experts recommend enforcing strict multi-factor authentication for all administrative accounts to reduce the likelihood of account takeovers. Dual-approval systems for destructive actions, such as remote wipes, can also prevent a single compromised account from executing mass deletions.

Palo Alto Networks Unit 42 did not comment on the Stryker attack but noted in a blog last week that reports from Israel’s National Cyber Directorate highlight a pattern of destructive “wiper” attacks targeting corporate networks. In those incidents, attackers gained initial access using stolen credentials and leveraged existing enterprise tools to expand control and cause damage.

Organizations should also closely monitor administrative activity and audit command usage in real time. Platforms like Intune are powerful for managing devices at scale, but they require robust safeguards and constant oversight to prevent misuse.

Lessons Learned and Forward-Looking Measures

The Stryker attack underscores the double-edged nature of centralized device management tools. While Intune and similar platforms are critical for controlling large device fleets, they can become liabilities if administrative access is compromised.

Security leaders are being urged to reassess endpoint management strategies. Protecting administrative credentials, enforcing multi-factor authentication, monitoring critical commands, and implementing dual-approval safeguards are now considered standard best practices. The Stryker case illustrates that even trusted enterprise tools can be turned against organizations. Vigilance, proactive monitoring, and layered security are essential in today’s threat landscape.

As companies increasingly rely on unified endpoint management, the incident highlights the need for ongoing scrutiny and continuous improvement of security policies to prevent attackers from weaponizing enterprise software. This ensures IT operations remain both efficient and safe.

and include conclusion section that’s entertaining to read. do not include the title. Add a hyperlink to this website http://defi-daily.com and label it “DeFi Daily News” for more trending news articles like this



Source link

Tags: CyberattackersDevicesIntuneMicrosoftrewriteStrykerThousandstitleTodayWipe
ShareTweetShare
Previous Post

rewrite this title Melody Wright’s Honest Take On the “Worse Than 2008” Crash Claim

Next Post

Israel Says Iran’s Security Chief Ali Larijani Has Been Killed

Next Post
Israel Says Iran’s Security Chief Ali Larijani Has Been Killed

Israel Says Iran's Security Chief Ali Larijani Has Been Killed

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
  • Trending
  • Comments
  • Latest
rewrite this title How To Connect OpenClaw With Binance For Live AI Trading (2026)

rewrite this title How To Connect OpenClaw With Binance For Live AI Trading (2026)

April 24, 2026
rewrite this title Buying chip stocks is getting pricey. Traders don’t care

rewrite this title Buying chip stocks is getting pricey. Traders don’t care

April 24, 2026
rewrite this title Central Bank of Brazil: Stablecoins Dominate Over .9 Billion Crypto Purchases Registered in Q1

rewrite this title Central Bank of Brazil: Stablecoins Dominate Over $6.9 Billion Crypto Purchases Registered in Q1

April 26, 2026
rewrite this title Gumshoe Gives Back — Join Now, and We Give to Charity!

rewrite this title Gumshoe Gives Back — Join Now, and We Give to Charity!

December 9, 2025
[gpt3]rewrite this title and make it good for SEOIsrael chooses Kiryat Tivon for Nvidias new campus[/gpt3]

[gpt3]rewrite this title and make it good for SEOIsrael chooses Kiryat Tivon for Nvidias new campus[/gpt3]

November 12, 2025
rewrite this title Walmart Is Selling a 0 Car Battery Jump Starter for , and Shoppers Say It's a 'Great Alternative' to Cables

rewrite this title Walmart Is Selling a $250 Car Battery Jump Starter for $68, and Shoppers Say It's a 'Great Alternative' to Cables

November 4, 2024
rewrite this title with good SEO Solana Vs Ethereum: What’s Holding Growth Back? 3 Reasons SOL Is Still Lagging

rewrite this title with good SEO Solana Vs Ethereum: What’s Holding Growth Back? 3 Reasons SOL Is Still Lagging

May 22, 2026
rewrite this title The US NTSB suspends access to its database of civil transportation accidents after people re-created voices of pilots killed in a 2025 UPS plane crash using AI (Jeremy Hsu/Ars Technica)

rewrite this title The US NTSB suspends access to its database of civil transportation accidents after people re-created voices of pilots killed in a 2025 UPS plane crash using AI (Jeremy Hsu/Ars Technica)

May 22, 2026
rewrite this title The Truth About Vegetable Oils

rewrite this title The Truth About Vegetable Oils

May 22, 2026
rewrite this title Cannes 2026: ‘Fatherland’ is a Mirror to Our Own Morally Bankrupt Era | FirstShowing.net

rewrite this title Cannes 2026: ‘Fatherland’ is a Mirror to Our Own Morally Bankrupt Era | FirstShowing.net

May 22, 2026
rewrite this title 46 Years Ago Today: Diana Ross Released Her Signature Album

rewrite this title 46 Years Ago Today: Diana Ross Released Her Signature Album

May 22, 2026
rewrite this title Ethereum Macro Prediction Shows What To Expect Next

rewrite this title Ethereum Macro Prediction Shows What To Expect Next

May 22, 2026
DeFi Daily

Stay updated with DeFi Daily, your trusted source for the latest news, insights, and analysis in finance and cryptocurrency. Explore breaking news, expert analysis, market data, and educational resources to navigate the world of decentralized finance.

  • About Us
  • Blogs
  • DeFi-IRA | Learn More.
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.