{"Name":"McKesson","Title":"McKesson","Domain":"mckesson.com","BreachDate":"2026-08-21","AddedDate":"2026-09-10T05:45:39Z","ModifiedDate":"2026-09-10T05:45:39Z","PwnCount":6404340,"Description":"In August 2026, <a href=\"https://www.bleepingcomputer.com/news/security/mckesson-discloses-breach-after-shinyhunters-claims-patient-data-theft/\" target=\"_blank\" rel=\"noopener\">healthcare and pharmaceutical company McKesson was targeted in a ShinyHunters \"pay or leak\" extortion campaign</a>. The group subsequently published a substantial corpus of data they alleged was sourced from the company, which included 6.4M unique email addresses among other personal and corporate data attributes. The impacted data related to a range of individuals and roles, including marketing campaign recipients, patients, staff and healthcare provider contacts. In <a href=\"https://www.mckesson.com/utility/cybersecurity/customer-cybersecurity-information-center/\" target=\"_blank\" rel=\"noopener\">McKesson's disclosure notice</a>, the company advised it had identified unauthorised access to \"certain third-party applications and the exfiltration of certain data was associated with a subset of customers within our Oncology & Multispecialty and Medical-Surgical business units\", but had \"reasonable assurance of no ongoing unauthorized activity\".","LogoPath":"https://logos.haveibeenpwned.com/McKesson.png","Attribution":null,"DisclosureUrl":"https://www.mckesson.com/utility/cybersecurity/customer-cybersecurity-information-center/","DataClasses":["Dates of birth","Email addresses","Employers","Genders","Names","Personal health data","Phone numbers","Physical addresses"],"IsVerified":true,"IsFabricated":false,"IsSensitive":true,"IsRetired":false,"IsSpamList":false,"IsMalware":false,"IsSubscriptionFree":false,"IsStealerLog":false}