
Medical technology company Boston Scientific has been targeted in a cyberattack that disrupted some of its IT systems, causing operational disruptions globally.
The company detected the incident on August 25 and says in an announcement today that it caused a network outage and “impacted access to certain operating systems and business applications, including the ability to process and ship customer orders.”
After identifying the intrusion, Boston Scientific activated its incident response procedures and contracted external cybersecurity experts to investigate the impact and help with containment efforts.
The company said it does not yet know when all affected systems will be restored.
“The incident has caused, and is expected to continue to cause, disruptions and limitations of access to certain of the Company’s information systems and business applications that support aspects of the Company’s operations, including the ability to process and ship customer orders,” Boston Scientific states.
“While the Company is working diligently to restore affected functions and systems access, the timeline for a full restoration is not yet known.”
Boston Scientific is a Massachusetts-based medical technology company that develops and manufactures devices used in minimally invasive procedures, including stents, catheters, pacemakers, defibrillators, endoscopes, and others.
It is one of the largest medical device manufacturers in the world, with 59,000 employees, 13 manufacturing facilities, a presence in 127 countries, and annual revenue of over $20 billion in 2025.
Boston Scientific says that its investigation continues as the company is working to determine the nature, scope, and operational or financial consequences of the cybersecurity incident.
In the filing disclosing the attack to the U.S. Securities and Exchange Commission (SEC), the company does not share any details about the type of cyberattack, the attacker, the initial access method, or whether any data has been exposed or stolen by the threat actor.
At the time of writing, BleepingComputer could not find any data extortion or ransomware threat actor claiming the Boston Scientific breach.
BleepingComputer has contacted the company for more information, but we are still waiting for a response.
Overall prevention scores can hide what happens after initial access. Once attackers are using valid credentials, prevention drops sharply.
The Blue Report 2026 measures defenses technique by technique across 338 million simulations run in customer production environments.

