ShinyHunters sets Sep 1 leak deadline for cancer therapy vendor Elekta

ShinyHunters posted radiation oncology equipment maker Elekta with a September 1 deadline before it says it will publish stolen data.

MedRisk Staff
By
2 Min Read

ShinyHunters has listed Elekta AB on its leak site and given the Swedish medical technology company until September 1 to respond before it says it will publish data. Threat trackers logged the listing on August 28, the same day the group claimed a 284-million-record haul from drug distributor McKesson.

Elekta builds radiation therapy and radiosurgery systems used by cancer centers worldwide, including Gamma Knife devices, linear accelerators, and the Elekta Unity magnetic resonance-guided machine. The group posted a final warning saying it will leak data and cause additional digital problems if Elekta does not engage, but it has not disclosed what data it holds or how much.

The company has not publicly confirmed the claim. Listings are assertions rather than proof of theft, and the same group’s mid-August leak of 7.1 million records it said came from Baxter International showed it does follow through when victims refuse to pay.

Ransomware.live, RansomLook, and GalaxyWarden all carry the Elekta listing, and researchers flag the claim as unverified. For hospital CISOs, the incident is a reminder that medical equipment vendors hold sensitive operational and clinical data, and that supplier breaches can ripple into provider networks. Organizations that use Elekta systems should ask the company for disclosure details and review third-party access to their environments.

Share This Article