Skip to content
NetarxImpact Database
Vishing (Voice Phishing)UnknownReported

Abbott investigates ShinyHunters claim after mid-June vishing on employees

Abbott Laboratories (legacy Exact Sciences systems) · Healthcare · United States · June 2026

What happened

ShinyHunters conducted vishing attacks against Abbott Laboratories employees in mid-June 2026 and compromised a Microsoft Entra single sign-on account that opened certain internal systems, according to reporting on the company's investigation. The group claimed 30 million rows of customer data including names, contact details, dates of birth and one million Social Security numbers, with a publication deadline of 21 July 2026. The affected systems were legacy Exact Sciences infrastructure acquired by Abbott in late 2025.

How the deception worked

Callers impersonating internal IT reached Abbott staff and steered them into an Entra sign-in they did not control, capturing the credential and the multi-factor response in the same call. The single compromised SSO identity federated into internal systems inherited from the Exact Sciences acquisition, an environment less likely to have been fully folded into Abbott's identity and monitoring controls. A separate actor using the handle ShadowByt3$ claimed access to Abbott's LabCentral portal on 4 July using compromised customer credentials; Abbott said that portal holds only non-sensitive technical documents.

The control that would have caught it· our reading, not a claim from the sources

Acquired estates need identity consolidation onto phishing-resistant MFA before the integration backlog is worked through, since attackers target exactly the tenant that has not been migrated yet.

Sources (2)

  1. Abbott Investigating Cyberattack Claims From Two Threat Actors
    HIPAA Journal·hipaajournal.comOpen ↗
  2. Abbott investigates after ShinyHunters claims massive data theft
    Paubox·paubox.comOpen ↗

This entry summarises public reporting. It is not a legal finding, and details can change as investigations conclude. Found an error? Send a correction.