McKesson discloses security breach as ShinyHunters claims massive patient data theft
Healthcare distributor McKesson reports a cyber incident involving unauthorized access and potential data theft by the ShinyHunters group.

Healthcare and pharmaceutical distribution giant McKesson has officially disclosed a cybersecurity incident involving unauthorized access to third-party applications and the theft of corporate data.
The breach came to light after the notorious ShinyHunters extortion group claimed responsibility, asserting that they had stolen an alarming 284 million patient data records.
Security experts and investigators are currently working to verify the claims and determine the exact scope of the compromised information. McKesson is taking steps to address the issue and reinforce its security posture.
This high-profile incident highlights the persistent risks associated with third-party vendors and supply chain integrations in large enterprises. Healthcare organizations continue to be prime targets for cybercriminals due to the sensitive nature of the data they handle.
For the global tech community, events like this emphasize the critical need for robust access controls, continuous monitoring, and proactive threat intelligence to safeguard vital infrastructure against sophisticated extortion groups.



