Threat Intelligence Brief | August 31, 2026

3.6M Employee Directory Records Stolen, Critical Vulnerabilities Rated 10.0 Put Enterprises at Risk

Healthcare disruption, credential theft, and critical vulnerabilities put sensitive data and business operations at risk.

Threat Report 28

Boston Scientific reported a cyberattack that disrupted access to systems, order processing, and customer shipments. Separately, a cybercriminal claimed to have stolen roughly 3.6 million employee-directory records from nine companies using compromised Microsoft Azure and Entra ID credentials.

The brief also covers seven serious Common Vulnerabilities and Exposures (CVEs), including three rated 10.0 across Microsoft Entra ID, Oracle Internet Directory, and the ServiceNow AI Platform.

How ColorTokens Threat Intelligence Helps You Stay Breach Ready

  • Tracks healthcare attacks involving vishing, compromised Salesforce access, and breached employee email accounts.
  • Examines how stolen credentials and broad directory permissions can enable large-scale corporate data extraction.
  • Surfaces critical vulnerabilities across identity, directory, privileged access, database, and enterprise application environments.
  • Highlights how cyberattacks can move beyond data theft to disrupt manufacturing, order processing, shipping, and critical infrastructure.

Our cybersecurity specialists can help you interpret these threat patterns and strengthen containment, access, and patching priorities.

Get Expert Help
Threat Report 28