Intuitive has disclosed a phishing cyberattackthat led to unauthorized access to certain internal business systems.

The company, known for its robotic-assisted surgery technologies, confirmed that attackers managed to obtain an employee's login credentials through a phishing attack, allowing them to infiltrate some internal IT applications.
The company publicly acknowledged the breach, but did not specify exactly when the incident occurred or when it was first detected.
See also: Chinese hackers target military organizations with AppleChris and MemFun
According to the company’s official statement, the breach stemmed from a “targeted cyber phishing incident.” The malicious actors gained access by exploiting employee credentials compromised, rather than breaching systems through technical vulnerabilities. This method highlights the ongoing risks posed by social engineering tactics, which remain a common entry point for cyberattacks. Unauthorized access was limited to certain internal IT applications.
Intuitive: Which data were exposed
The data obtained during the cyberattack on Intuitive includes certain contact information and business customer, as well as employee information and corporate data.
The company clarified that this information was obtained through its internal administrative network and not through its medical devices or operational platforms.
Despite the severity of the phishing attack on Intuitive, the company stressed that its core products and services were not impacted. Its core systems, including the da Vinci surgical platform and the Ion endoluminal system , continued to operate securely and without interruption.
See also: Loblaw Companies Limited: Customer data breach

In its statement, the company said: “Our da Vinci, Ion and digital platforms were not impacted and continue to be secure and operational.”
The organization also highlighted network architecture , explaining that its infrastructure is segmented. This means that the networks supporting internal business applications are separate from those used for manufacturing operations and medical platforms.
As a result, the cyberattack on Intuitive did not spread beyond the initially affected systems. Additionally, the hospital networks that use Intuitive’s robotic systems remain isolated from the company’s internal network. These systems are managed independently of the hospital IT teams, further limiting the potential scope of the attack on Intuitive.
Remediation measures
After the breach was discovered, the company immediately activated incident response protocols. It ensured the security of the affected applications, launched an investigation, and began revising its security measures.
See also: Starbucks: Data breach affects employees
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

The organization has also raised awareness among employees , reminding them of the importance of cybersecurity training and best practices. It is also in the process of notifying customers and relevant data protection regulators
The investigation into the phishing attack on Intuitive remains ongoing and further updates are expected as more information becomes available.
