IndustrialCyber

Boston Scientific restores operations after cybersecurity incident disrupts order fulfillment


Following its August cyber disruption, medical equipment manufacturer Boston Scientific revealed this week that manufacturing, order fulfillment and shipping operations have been fully restored following a cybersecurity incident identified Aug. 25, with products now moving through its distribution network at or above normal levels. The medical technology company said it is working to clear orders that were pending before the incident as well as those received during the disruption, although some customers may continue to experience temporary delays. 

“As order processing continues, we are working to fulfill customer orders as quickly as possible, including those pending prior to the August 25 cybersecurity incident and those received during the disruption,” the company said in its latest security update. “While some customers may continue to experience temporary delays, we are prioritizing manufacturing and distribution efforts to support ongoing customer demand and minimize the impact on patients and healthcare providers.”

Independent assessments by CrowdStrike and other third-party cybersecurity experts have found no evidence of ongoing threat activity or compromise of Boston Scientific’s systems or product technologies since containment procedures were implemented on Aug. 25. Assessments covered product development and software systems, manufacturing and medical device maintenance systems, software and business applications, cloud-based systems, email and external collaboration platforms. 

The disruption to remote monitoring activations has also been resolved, restoring activation capability for cardiac device implant communicators and ICM remote monitoring.

The update reassured customers and vendors that they may continue communicating and exchanging information with Boston Scientific through their normal channels, including with sales representatives and other employees, through email and established digital platforms and connections. “Regarding business application availability, we are actively restoring applications. Customers and other stakeholders experiencing application access issues will receive direct notifications as specific applications become available for access and use.”

“We will continue to provide additional information about our forensic findings and CrowdStrike’s investigation as they become available through website updates and in our communications with customers, suppliers and other partners,” the note added. “We recognize the impact this incident has had on our customers and the patients they serve. We are grateful for the patience and partnership our customers, healthcare providers, patients, suppliers and other stakeholders have shown throughout this incident.” 

The substantial progress achieved reflects the extraordinary dedication of employees, cybersecurity experts and partners across the company, whose collaborative efforts helped restore operations and support customers and patient care.



Source link