Abbott Laboratories Investigates Two Separate Cyber Incidents
Healthcare companies hold sensitive patient data, and simultaneous incidents at a major diagnostics provider raise questions about system isolation and response protocols.
Two separate incidents under review
Abbott Laboratories confirmed unauthorized access to internal legacy systems within its Cancer Diagnostics division, specifically affecting Exact Sciences systems. The company is investigating a second, separate claim involving its LabCentral portal.
Attackers allegedly stole company data and have made extortion demands. Abbott has not disclosed the scope of data potentially compromised or whether patient information was accessed.
Legacy systems and modern threats
The incident highlights ongoing security challenges with legacy infrastructure in healthcare organizations. Older systems often lack the security controls built into modern platforms, yet continue operating because they support critical functions.
Abbott acquired Exact Sciences' cancer diagnostics business in recent years. Post-acquisition integration often creates security gaps as companies merge different technology stacks and access controls.
What happens next
Abbott is working with cybersecurity specialists to determine the full extent of both incidents. The company will likely face regulatory scrutiny if patient data was compromised, particularly under healthcare privacy regulations.
The separate nature of the two incidents suggests either coordinated attacks or that multiple threat actors have identified vulnerabilities in Abbott's systems. Either scenario points to broader security architecture concerns.