Find notable cyber news and cases, enriched with sources, timelines, and signals.

McKesson customer data exfiltration via third-party applications

Data Leak
First reported
Last updated
Happening score
H score 81
1 unique sources, 1 articles

Summary

Hide ▲

McKesson confirmed unauthorized access to third-party applications and exfiltration of data tied to a subset of customers, raising the risk of exposure across its oncology and medical-surgical business lines. The affected data was linked to Oncology & Multispecialty and Medical-Surgical customers, and the investigation was first disclosed on August 28 before being confirmed the next day. A threat actor calling itself ShinyHunters claimed responsibility on a leak site, while outside reports suggested as many as 284 million records and a $55m ransom demand. McKesson said there was no ongoing unauthorized activity in its corporate network and that customer service remained unaffected.

Related Happenings

RingCentral ShinyHunters data leak

Data Leak
H score57 First: 14.08.2026 13:52 Last: 14.08.2026 13:52 Sources 1

About this happening: The ShinyHunters group published a 280GB archive of stolen RingCentral data on a dark web leak site after a ransom demand was refused, turning a July 2026 breach into...

Kodak customer and internal data leak claim

Data Leak
H score75 First: 17.06.2026 10:07 Last: 17.06.2026 10:07 Sources 1

About this happening: Kodak is facing a claimed data leak after ShinyHunters said it stole over 2.2 million records from the company and threatened public release. The claimed material incl...

IRhythm patient data exfiltration from third-party business applications

Data Leak
H score34 First: 16.06.2026 09:31 Last: 16.06.2026 09:31 Sources 1

About this happening: iRhythm Holdings disclosed a data breach involving third-party-hosted business applications after a threat actor used social engineering to access data and demande...

DentaQuest 2.6 million-account data leak

Data Leak
H score65 First: 04.06.2026 21:36 Last: 04.06.2026 21:36 Sources 1

About this happening: DentaQuest's public leak exposed records for 2.6 million accounts, putting personal and health-related data at risk. The leak followed ShinyHunters' claim to h...

7-Eleven hit by network compromise

Incident
H score53 First: 19.05.2026 17:16 Last: 19.05.2026 17:16 Sources 1

About this happening: 7-Eleven is a victim-focused breach incident in which an unauthorized third party accessed systems used to store franchisee documents on April 8, 2026, trigger...

Timeline

  1. 01.09.2026 11:25 2 articles · 2h ago

    McKesson investigates unauthorized access to third-party applications and data exfiltration

    Initial Disclosure

    McKesson said it was investigating unauthorized access to certain third-party applications and exfiltration of data tied to a subset of customers in its Oncology & Multispecialty and Medical-Surgical business units, then later confirmed that the unauthorized access and exfiltration were associated with those customers while saying customer service remained unaffected and distribution centers continued to operate.

    Show sources