Milan, the pharmaceutical company Mipharm SPA victim of a hacker attack

Milan, the pharmaceutical company Mipharm SPA victim of a hacker attack
Marco A. De Felice aka amvinfe April 26, 2021 No Comments Cyber ​​attack Data Breach Mipharm SPA Ransomware REvil Sodinokibi ZoomInfo
Facebook Twitter
The group of cybercriminals Sodinokibi (REvil) has published some screenshots of the data stolen during the cyber attack on the servers of the Milanese pharmaceutical company.
Mipharm was born in 1998 from the merger of Sandoz with Ciba Geigy giving birth to Novartis, the company subsequently passed to the private equity fund Mandarin Capital Partners II, a minority stake remained with some managers of the Milanese pharmaceutical company. Mipharm is one of the most important international companies operating in the field of research and development of pharmaceutical products.



In the last year there have been many, too many organizations in the world of healthcare that have suffered intrusions into their IT systems. Victims of unscrupulous cybercriminals despite an ongoing pandemic that does not seem destined to stop.

A world, that of healthcare and pharmaceutical companies, which after more than a year of COVID-19 have never stopped trying to give, through their own excellence, an answer against the pandemic. A war against an "invisible enemy" that has caused millions of deaths in the world and that today continues its "race" towards those continents where, perhaps, the research and development of new drugs is not yet fully advanced.

What is there for all to see, but even more so for the people who closely follow the entire cybersecurity sector, is the lack of scruples manifested in all this time by groups of criminals who speculate, try to enrich themselves behind the suffering. of people.

Then, we could also open a discussion about the billionaire profits that pharmaceutical companies around the world have made and will continue to make "thanks" to this pandemic, but this is an issue that should be addressed by other actors, not by researchers or companies. operating in the IT security sector.

On the other hand, what is of primary importance to remember is the scarce attention that some entities, in certain cases, give to the protection of their data and the poor security of their IT infrastructures. This does not happen, as unfortunately SuspectFile has repeatedly been able to document, only in the medical-scientific-health field.

It would seem that the theft of Mipharm data occurred through the account that the pharmaceutical company had on the ZoomInfo Software as a service (SaaS) platform, while we are writing to you the account is unreachable. At the moment no further details are known about the cyber attack on Mipharm SPA. Just as the real extent of the data theft is unknown, even if, from the material that Sodinokibi published, the “weight” of the documents in the hands of cybercriminals would seem to be of a certain value for the Milan-based company.

SuspectFile sent an email to Mipharm SPA asking for a statement on the matter.