Le autorità statunitensi hanno sequestrato due siti collegati al gruppo Handala dopo che il collettivo ha rivendicato un attacco l'11 marzo contro Stryker. Le analisi indicano che credenziali amministrative sono state probabilmente raccolte e usate per abusare di Microsoft Intune e cancellare dati su decine di migliaia di dispositivi, interrompendo processi ordini, produzione e spedizioni.
FBI, CISA warn on Microsoft Intune risks after Iran-linked cyberattack on Stryker
The attackers behind a recent attack on Stryker did not use malware, instead breaking into a legitimate Microsoft device management system called Intune and wiping the company’s data that way.
The FBI and the Justice Department took down two websites linked to the pro-Iranian hacktivist group Handala, which last week hacked medical tech giant Stryker.