Medtronic, a global medical technology company, experienced a data breach in April 2026 when the ShinyHunters extortion group accessed its corporate IT systems. The company began notifying affected individuals in April 2026. Official notification letters were submitted to the California and Indiana Attorney General’s Offices.
The breach involved the exposure of names, contact details, dates of birth, Social Security numbers (SSN), and health-related details (medical information). Medtronic confirmed that 3,834,294 individuals were affected by this incident. There is no explicit mention of financial data being compromised, although Medtronic is providing credit monitoring services. According to the company, there is no evidence that the stolen information was publicly posted or exposed on the internet.
Details about data breaches can emerge over time, and notification processes may be delayed.