Boston Scientific disclosed an ongoing cyberattack that disrupted IT systems and operations globally. The incident caused a network outage that restricted access to operating systems, information systems, and business applications, including systems used to process and ship customer orders.
The medical-device manufacturer activated its incident-response process and retained external cybersecurity specialists to investigate and contain the intrusion. Boston Scientific has not identified an attacker or attack vector, confirmed ransomware involvement, or reported evidence of data theft; the full scope, restoration timeline, and operational and financial effects remain under assessment.

See attribution, scope, and your downstream exposure.
3 events from the most recent confirmed update back to the earliest known activity.
Boston Scientific publicly disclosed the ongoing incident in an SEC filing, stating that the nature, scope, and operational and financial effects remained under assessment and that it had no timeline for full restoration. The company did not identify an attacker, confirm ransomware involvement or data theft, and no threat actor had publicly claimed responsibility.
Boston Scientific detected a cybersecurity incident that disrupted IT systems globally, limiting access to operating systems and business applications, including those used to process and ship customer orders. The company activated incident-response procedures and retained external cybersecurity experts to investigate and contain the intrusion.
Boston Scientific said the apparent compromise was limited to some on-premises systems and that it had found no signs of malicious activity on its networks since August 25. It said existing implantable cardiac rhythm-management devices were unaffected, while new remote activations for some cardiac monitors were disrupted, and anticipated partially resuming shipments of some products.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
10 references tracked. Mallory keeps watching after this page renders.
cybersecuritynews.com
Open sourcesecurityweek.com
Open sourcescworld.com
Open sourcetherecord.media
Open sourcetheregister.com
Open sourcebleepingcomputer.com
Open sourcesec.gov
Open sourcenews.bostonscientific.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.