Handala Claims Mass Wipe, Disrupts Stryker Microsoft Environment
Pro‑Iranian group Handala claims it wiped devices and exfiltrated data from medical device maker Stryker. Stryker reports widespread disruption to its Microsoft environment, ongoing recovery, and no indication of ransomware or malware. Immediately audit and lock down Microsoft Entra/Intune admin accounts, enforce MFA on privileged and break‑glass accounts, review recent Intune commands, isolate suspected endpoints, and verify immutable offline backups.