The Metaencryptor extortion crew has listed Beckman Coulter on its leak site, roughly a week after adding another diagnostics name to the same roster.
ransomware.live logged the Beckman Coulter entry on September 17, 2026, with an estimated attack date of the same day. The listing describes the company as a US medical diagnostics manufacturer whose hematology, immunoassay, clinical chemistry, microbiology, and lab automation systems run in hospitals and reference laboratories worldwide. Beckman Coulter is a Danaher company.
The tracking page also flags prior infostealer exposure tied to the company’s domain: nine compromised employee accounts, 204 compromised users, 1,546 passwords with 497 rated critical, and 2,190 session cookies. Stolen credentials and cookies of that kind are a common on-ramp for intrusion crews, who log in as staff rather than breaking in.
Beckman Coulter follows Hologic, the diagnostics maker the same crew claimed earlier in September. Metaencryptor has been tracked since mid-2023 and generally targets medium to large enterprises. As with most leak-site claims, the volume and content of any stolen data remain unverified.
Lab equipment makers sit upstream of patient care. Their instruments and service channels touch hospital labs and often carry remote support links into them, which makes a breach at this tier a supply-chain question for every hospital lab director.