BT
Privacy ToolboxJournalProjectsResumeBookmarks
Feed
Privacy Toolbox
Journal
Projects
Resume
Bookmarks
Intel
Threat Actors
Privacy Threats
Dashboard
CVEs
Tags
Intel
Threat ActorsPrivacy ThreatsDashboardCVEsTags

Intel

  • Feed
  • Threat Actors
  • Privacy Threats
  • Dashboard
  • Privacy Toolbox
  • CVEs

Personal

  • Journal
  • Projects

Resources

  • Subscribe
  • Bookmarks
  • Developers
  • Tags
Cybersecurity News & Analysis
github
defconxt
β€’
Β© 2026
β€’
blacktemple.net
  1. Feed
  2. /Iranian Actors Hit Medical Infrastructure While Meta Disrupts Influence Operations

Iranian Actors Hit Medical Infrastructure While Meta Disrupts Influence Operations

March 12, 2026Nation-State & APT3 min readhigh

Originally reported by Security Affairs, The Record

#iran#medical-infrastructure#influence-operations#hacktivist#data-breach#stryker#albania#meta
Share

TL;DR

Iranian cyber actors launched coordinated attacks against medical device manufacturer Stryker and Albania's parliament email systems, while Meta disrupted a separate Iranian influence operation using fake Instagram personas to target US users.

Why high?

Multiple coordinated Iranian cyber operations targeting critical medical infrastructure and government systems, with confirmed operational disruption at major healthcare provider Stryker.

Iranian Operations Target Critical Infrastructure

Multiple Iranian-linked cyber operations have emerged this week, targeting both critical medical infrastructure and government systems while conducting influence campaigns on social media platforms.

Stryker Medical Device Giant Hit by Destructive Attack

Medical technology manufacturer Stryker confirmed a cyberattack that has disrupted global operations, according to The Record. Pro-Palestinian hacktivist group Handala claimed responsibility for the attack, alleging it wiped 200,000 systems across the company's infrastructure.

Employees and contractors reported that devices were completely wiped during the attack, which occurred early Wednesday. The timing coincides with the group's stated retaliation for U.S. and Israeli strikes on Iran, highlighting the geopolitical motivations behind the operation.

Stryker's systems remain offline as the company works to restore operations. The attack represents a significant escalation in targeting critical medical infrastructure that directly impacts patient care capabilities.

Albania Parliament Email Systems Compromised

Iran-linked hackers successfully compromised Albania's parliamentary email systems, according to The Record. While the parliament's main systems and official website remained operational, internal email services used by parliamentary administration were temporarily suspended.

The attack continues a pattern of Iranian cyber operations targeting Albanian government infrastructure. Albania has previously severed diplomatic ties with Iran over cyber operations, making it a consistent target for Iranian threat actors.

Meta Disrupts Instagram Influence Campaign

Meta disrupted an Iranian influence operation that used sophisticated fake personas on Instagram to build relationships with U.S. users before introducing political messaging, The Record reported. The operation represents an evolution in Iranian influence tactics, focusing on long-term relationship building rather than immediate propaganda dissemination.

The campaign targeted American users specifically, indicating Iran's continued interest in influencing U.S. political discourse through social media manipulation.

Healthcare Sector Under Siege

Bell Ambulance Breach Affects 238,000 Patients

Bell Ambulance, Wisconsin's largest ambulance provider, disclosed that a February 2025 cyberattack affected approximately 235,000 individuals. The breach exposed Social Security numbers, driver's license numbers, financial accounts, medical information, and health insurance data.

The company serves communities with urgent medical response and interfacility transfers, making the breach particularly concerning for ongoing patient care coordination. The timing suggests potential coordination with other healthcare targeting campaigns.

Platform Security and Policy Developments

Meta's Anti-Scam Enforcement Efforts

Meta reported removing 159 million scam advertisements in the previous year amid congressional scrutiny over the company's role in facilitating fraudulent advertising. U.S. lawmakers have called for investigations into Meta's profiting from scam ads, highlighting the ongoing tension between platform monetization and user protection.

ENISA Package Manager Security Guidance

The European Union Agency for Cybersecurity (ENISA) released its first Technical Advisory on Secure Package Managers, providing developers with guidance for safely consuming third-party packages. The March 2026 document (v1.1) incorporated feedback from 15 stakeholder contributions, addressing critical supply chain security concerns in software development.

The advisory focuses on DevSecOps practices essential for preventing package-based attacks, which have become increasingly common in nation-state operations targeting software supply chains.

Sources

  • https://therecord.media/stryker-cyberattack-iran-hackers
  • https://therecord.media/iran-linked-hackers-claim-cyberattack-albania-parliament
  • https://therecord.media/iran-instagram-influence-operation-disrupted
  • https://therecord.media/235000-affected-cyberattack-ambulance-provider
  • https://therecord.media/meta-scam-advertising-crackdown
  • https://securityaffairs.com/189304/hacktivism/pro-palestinian-hacktivist-group-handala-targets-stryker-in-global-disruption.html
  • https://securityaffairs.com/189343/data-breach/bell-ambulance-data-breach-impacted-over-238000-people.html
  • https://securityaffairs.com/189333/security/enisa-technical-advisory-on-secure-package-managers-essential-devsecops-guidance.html

Originally reported by Security Affairs, The Record

Tags

#iran#medical-infrastructure#influence-operations#hacktivist#data-breach#stryker#albania#meta

Tracked Companies

πŸ‡ΊπŸ‡ΈMeta Platforms

Related Intelligence

  • FBI Probes Surveillance System Intrusion as White House Unveils New Cyber Strategy

    highMar 8, 2026
  • Iranian APT Groups Intensify Cyber Operations Against U.S. and Middle East Infrastructure

    highMar 7, 2026
  • Nation-State Roundup: Iran-Nexus APT Targets Iraq Officials, Phobos Admin Pleads Guilty, Multi-Year Campaign Exposed

    highMar 6, 2026

Explore

  • Dashboard
  • Privacy Threats
  • Threat Actors
← Back to the feed

Previous Article

← Ransomware Devastates Oceania Healthcare While New Threats Target Critical Infrastructure

Next Article

Illinois Dealer Sentenced to 8 Years for Dark Web-to-Facebook Meth Distribution β†’