Security News

Cybersecurity news aggregator

HIGH Attacks SC Media

Abbott Laboratories investigates 2 separate cyber incidents

Abbott Laboratories is investigating two separate incidents: a vishing attack against employees led to the compromise of a Microsoft Entra single sign-on account and unauthorized access to legacy Cancer Diagnostics systems by ShinyHunters, while a separate credential compromise of the LabCentral portal is claimed by ShadowByt3$. The first incident reportedly resulted in the exfiltration of sensitive customer and medical data, though Abbott states the impacted legacy systems are separate from main operations. The second incident allegedly involved technical documents Abbott characterizes as publicly available.
Read Full Article →

Critical Infrastructure Security Abbott Laboratories investigates 2 separate cyber incidents July 20, 2026 Share By SC Staff As noted by Bleeping Computer, Abbott Laboratories is currently investigating two distinct cybersecurity incidents. One incident involves unauthorized access to internal legacy systems within its Cancer Diagnostics business, while the other concerns a potential breach of its LabCentral portal. The first incident was highlighted when the ShinyHunters extortion gang claimed to have accessed Abbott's internal legacy Exact Sciences systems in its Cancer Diagnostics business. ShinyHunters alleges the breach occurred through a vishing attack targeting employees, leading to the compromise of a Microsoft Entra single sign-on account. The group claims to have exfiltrated millions of customer records, including personal identifiable information and Social Security numbers, as well as sensitive medical data. Abbott stated that these legacy systems are separate from its main operations and that the incident does not impact business operations or product availability. Separately, a threat actor known as ShadowByt3$ claims to have breached Abbott's Core Laboratory diagnostics business via its LabCentral customer portal using compromised credentials. This actor alleges the theft of technical specifications and regulatory documentation but states no customer data was compromised. Abbott confirmed awareness of this potential incident, characterizing the data as publicly available technical documents. Source: Bleeping Computer SC Staff Related Supply chain New npm malware cluster targets Vite ecosystem SC Staff July 20, 2026 The ViteVenom campaign, attributed to the threat actor SuccessKey, builds upon the tactics seen in the earlier ChainVeil attack. Critical Infrastructure Security Abbott reports cyberattack on cancer diagnostics business SC Staff July 17, 2026 The medical device company stated that the breach did not affect other Abbott businesses, sites, or systems. Government security PhantomEnigma campaign hijacks Brazilian government websites for malware delivery SC Staff July 17, 2026 The PhantomEnigma campaign has evolved, shifting from banking-focused attacks in 2025 to leveraging compromised .gov.br websites and authenticated emails in 2026. Related Events Cybercast From code to cloud: Stopping attacks in the software supply chain On-Demand Event Virtual Conference Securing the Backbone: Strategies to Counter Cyber Threats to Critical Infrastructure in the Public Sector On-Demand Event Get daily email updates SC Media's daily must-read of the most current and pressing daily news Business Email By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy . Subscribe You can skip this ad in 5 seconds

Share this article