Medtronic (NYSE:MDT) issued a statement saying that it determined that an unauthorized party accessed data in certain corporate IT systems.
The medtech giant said it has identified no impact to products, patient safety, connections to customers, manufacturing and distribution, financial reporting systems or its ability to meet patient needs. The networks that support its corporate IT systems remains separate from systems supporting products, manufacturing and distribution. Hospital netowrks also remain separate from Medtronic IT networks.
Upon identifying the access, Medtronic said it took immediate steps to contain the incident. It activated its incident response protocols and engaged leading cybersecurity experts to support its investigation and remediation efforts. The company said it continues to work to identify any potential access to personal information.
“Protecting patients and the trust placed in Medtronic is our highest priority,” the statement said. “The privacy and security of all data with which we are entrusted is a vital part of that. As we resolve any impact of this unauthorized access to data in our systems, we are simultaneously identifying additional ways to further optimize our system security. We currently do not expect a material impact on our business or financial results.”
This isn’t the first cybersecurity issue in medtech of late. Last month, Iranian-backed “hacktivist” group managed a “wiper attack” against Stryker, targeting data on Stryker’s Microsoft-based IT system and effectively wiping it out so it can’t be retrieved. The group said it undertook the cyberattack in response to U.S. and Israeli attacks on Iran, beginning on Feb. 28, 2026.
Days later, Intuitive Surgical said an unauthorized third party accessed certain internal IT business applications in a cybersecurity incident. The surgical robotics leader said the breach came as a result of a cybersecurity phishing incident.
There is no indication at this time that the breaches across the large medtech firms are related or were executed for similar reasons.
