Novo Nordisk A/S, the Copenhagen-based pharmaceutical company, is responding to a significant cybersecurity incident after a criminal group claimed to have stolen 1.3 terabytes of internal data and demanded a $25 million ransom. The company disclosed the breach on June 11, 2026, stating that unauthorized access occurred on a limited number of internal IT systems and that some non-public data was copied and transferred. Researchers at CybelAngel and Dark Reading report that attackers exploited a single exposed GitHub personal access token found in client-side JavaScript. The group, calling itself FulcrumSec, alleges it obtained drug formulas, AI models, and clinical-trial-related data.
Prepared by Christopher Adams and reviewed by editorial team.
No left-leaning sources found for this story.
No right-leaning sources found for this story.
Comments