<!-- mobian-agent-page publisher="dailydev" canonical="https://daily.dev/posts/healthcare-cyberattacks-hit-pacemakers-and-millions-of-patient-records-wtnwwiya9" -->

---
title: Healthcare cyberattacks hit pacemakers and millions of...
description: Boston Scientific and McKesson disclosed separate cyberattacks over the weekend. Boston Scientific&#x27;s ongoing breach, first detected August 25, has disrupted...
canonical: https://daily.dev/posts/healthcare-cyberattacks-hit-pacemakers-and-millions-of-patient-records-wtnwwiya9
twitter:card: summary_large_image
twitter:site: @dailydotdev
og:type: website
og:site_name: daily.dev
og:title: Healthcare cyberattacks hit pacemakers and millions of patient records | daily.dev
og:description: Boston Scientific and McKesson disclosed separate cyberattacks over the weekend. Boston Scientific&#x27;s ongoing breach, first detected August 25, has disrupted...
og:url: https://daily.dev/posts/healthcare-cyberattacks-hit-pacemakers-and-millions-of-patient-records-wtnwwiya9
og:image: https://api.daily.dev/og/posts/wTNwwIYa9.png
og:image:alt: Healthcare cyberattacks hit pacemakers and millions of patient records
og:image:width: 1200
og:image:height: 630
og:locale: en
---

> ## Documentation Index
> Fetch the complete documentation index at: https://daily.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# Healthcare cyberattacks hit pacemakers and millions of patient records

**[The Register](https://daily.dev/sources/theregister)** · 5 min read · 0 upvotes · 0 comments

## Summary

Boston Scientific and McKesson disclosed separate cyberattacks over the weekend. Boston Scientific's ongoing breach, first detected August 25, has disrupted manufacturing and shipping and disabled remote monitoring for newly implanted pacemakers and heart devices until systems are restored, with no timeline given; CrowdStrike is assisting. McKesson confirmed that ShinyHunters breached its Snowflake and Salesforce instances via voice phishing employees, stealing data on oncology and medical-surgical customers; the group claims 284 million records were taken and is demanding $55.2 million, though such criminal claims are often inflated, as seen in the recent Carhartt breach discrepancy.

## Full article

daily.dev links to this article rather than hosting it. Read it at the original source: <https://www.theregister.com/cyber-crime/2026/08/31/healthcare-cyberattacks-hit-pacemakers-and-millions-of-patient-records/5293537>

## Questions this post answers

### Why can't newly implanted Boston Scientific pacemakers transmit data to remote monitoring systems right now?

An ongoing cyberattack detected on August 25 disabled the activation of new remote monitoring communicators, so heart devices implanted after that date cannot send data to remote patient management systems. Cardiac rhythm devices other than insertable cardiac monitors are affected; ICMs still record data but require in-person transmission via the Clinic Assistant app's interrogate function until systems are restored.

_Teams tracking medical-device outages and vendor incident updates can follow breach fallout on daily.dev._

### How did ShinyHunters claim to breach McKesson's Snowflake and Salesforce instances?

ShinyHunters said it gained access by voice phishing multiple McKesson employees, a technique the group has repeatedly used against other healthcare targets including pacemaker maker Medtronic and cancer diagnostics firm Exact Sciences. The group claims to have stolen over 284 million patient records, including names, Social Security numbers, and cancer diagnosis details, and demanded McKesson pay $55.2 million.

_Security teams evaluating vishing risk against SaaS platforms like Salesforce can track similar incidents on daily.dev._

### Can I trust the number of records a hacking group like ShinyHunters claims to have stolen?

Not necessarily. Have I Been Pwned's Troy Hunt has warned that criminal groups' claimed record counts should be taken with skepticism unless the methodology is verified; when ShinyHunters claimed a large Carhartt breach, HIBP's own analysis found the real number affected was roughly half of what the group publicly claimed.

_Anyone assessing breach severity claims can compare vendor and researcher accounts side by side on daily.dev._

## Similar posts on daily.dev

- [Pacemaker manufacturer Medtronic warns patients cybercrooks may have swiped health data](https://daily.dev/posts/pacemaker-manufacturer-medtronic-warns-patients-cybercrooks-may-have-swiped-health-data-idhfoejtd) · The Register · 0 upvotes · 0 comments

---

Tags: [#healthcare](https://daily.dev/tags/healthcare), [#data-breach](https://daily.dev/tags/data-breach), [#salesforce](https://daily.dev/tags/salesforce)

[View this post on daily.dev](https://daily.dev/posts/healthcare-cyberattacks-hit-pacemakers-and-millions-of-patient-records-wtnwwiya9)

```json
{"@context":"https://schema.org","@graph":[{"@type":"Organization","@id":"https://daily.dev/#organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180},"sameAs":["https://twitter.com/dailydotdev","https://github.com/dailydotdev","https://www.linkedin.com/company/daily-dev-ltd"]},{"@type":"WebSite","@id":"https://daily.dev/#website","url":"https://daily.dev","name":"daily.dev","publisher":{"@id":"https://daily.dev/#organization"},"potentialAction":{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https://daily.dev/search?q={search_term_string}"},"query-input":"required name=search_term_string"}}]}
{"@context":"https://schema.org","@type":"TechArticle","headline":"Healthcare cyberattacks hit pacemakers and millions of patient records","url":"https://daily.dev/posts/healthcare-cyberattacks-hit-pacemakers-and-millions-of-patient-records-wtnwwiya9","mainEntityOfPage":{"@type":"WebPage","@id":"https://daily.dev/posts/healthcare-cyberattacks-hit-pacemakers-and-millions-of-patient-records-wtnwwiya9"},"datePublished":"2026-08-31T22:14:45.199Z","dateModified":"2026-08-31T23:44:04.867Z","description":"Boston Scientific and McKesson disclosed separate cyberattacks over the weekend. Boston Scientific's ongoing breach, first detected August 25, has disrupted...","image":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/43f7d3659f7f795f60a3fe03afae4d0d?_a=AQAEuop","thumbnailUrl":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/43f7d3659f7f795f60a3fe03afae4d0d?_a=AQAEuop","isAccessibleForFree":true,"articleSection":"The Register","inLanguage":"en","publisher":{"@type":"Organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180}},"author":{"@type":"Organization","name":"The Register","logo":"https://media.daily.dev/image/upload/t_logo,f_auto/v1/logos/66aa2113fdad463992ffcbf0e8963fda","url":"https://daily.dev/sources/theregister"},"commentCount":0,"discussionUrl":"https://daily.dev/posts/healthcare-cyberattacks-hit-pacemakers-and-millions-of-patient-records-wtnwwiya9","interactionStatistic":[{"@type":"InteractionCounter","interactionType":{"@type":"LikeAction"},"userInteractionCount":0},{"@type":"InteractionCounter","interactionType":{"@type":"CommentAction"},"userInteractionCount":0}],"keywords":"healthcare,data-breach,salesforce","timeRequired":"PT5M"}
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://daily.dev"},{"@type":"ListItem","position":2,"name":"The Register","item":"https://daily.dev/sources/theregister"},{"@type":"ListItem","position":3,"name":"Healthcare cyberattacks hit pacemakers and millions of patient records"}]}
{"@context":"https://schema.org","@type":"FAQPage","@id":"https://daily.dev/posts/healthcare-cyberattacks-hit-pacemakers-and-millions-of-patient-records-wtnwwiya9#faq","mainEntity":[{"@type":"Question","name":"Why can't newly implanted Boston Scientific pacemakers transmit data to remote monitoring systems right now?","acceptedAnswer":{"@type":"Answer","text":"An ongoing cyberattack detected on August 25 disabled the activation of new remote monitoring communicators, so heart devices implanted after that date cannot send data to remote patient management systems. Cardiac rhythm devices other than insertable cardiac monitors are affected; ICMs still record data but require in-person transmission via the Clinic Assistant app's interrogate function until systems are restored. Teams tracking medical-device outages and vendor incident updates can follow breach fallout on daily.dev."}},{"@type":"Question","name":"How did ShinyHunters claim to breach McKesson's Snowflake and Salesforce instances?","acceptedAnswer":{"@type":"Answer","text":"ShinyHunters said it gained access by voice phishing multiple McKesson employees, a technique the group has repeatedly used against other healthcare targets including pacemaker maker Medtronic and cancer diagnostics firm Exact Sciences. The group claims to have stolen over 284 million patient records, including names, Social Security numbers, and cancer diagnosis details, and demanded McKesson pay $55.2 million. Security teams evaluating vishing risk against SaaS platforms like Salesforce can track similar incidents on daily.dev."}},{"@type":"Question","name":"Can I trust the number of records a hacking group like ShinyHunters claims to have stolen?","acceptedAnswer":{"@type":"Answer","text":"Not necessarily. Have I Been Pwned's Troy Hunt has warned that criminal groups' claimed record counts should be taken with skepticism unless the methodology is verified; when ShinyHunters claimed a large Carhartt breach, HIBP's own analysis found the real number affected was roughly half of what the group publicly claimed. Anyone assessing breach severity claims can compare vendor and researcher accounts side by side on daily.dev."}}]}
```

