Cybersecurity & Privacy — 2026-03-22

CISA Flags Endpoint Management Threats After Stryker Breach; Adds 5 Flaws to KEV Catalog

CISA issued warnings about rising threats to endpoint management systems following the March 11 cyberattack on medical technology company Stryker Corp, which wiped corporate devices and forced hospitals to temporarily pause vital-sign data transmission. Separately, CISA added five security flaws affecting Apple, Craft CMS, and Laravel Livewire to its Known Exploited Vulnerabilities catalog, setting an April 3 federal patching deadline. The Stryker breach, attributed to Handala (a hacktivist persona operated by MOIS's Void Manticore), affected 150 million patients' service chain.

Analysis
Connects to prior INTSUM's Sophos advisory on elevated critical infrastructure risk and IC Brief's reporting on CISA at 38% capacity. Stryker's 150M-patient impact chain demonstrates the scale of healthcare sector vulnerability that both advisories warned about.
2 sources
  1. CISA flags rising threats to endpoint management systems after Stryker breach - Industrial Cyber
  2. ISAC advisory highlights cyber and physical risks to critical infrastructure - Industrial Cyber

View in full brief →

UNCLASSIFIED // OPEN SOURCE