Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
iRhythm Technologies, Inc.

iRhythm Technologies, Inc. Vendor Cyber Rating & Cyber Score

irhythmtech.com

iRhythm is a leading digital health care company that creates trusted solutions that detect, predict, and prevent disease. Combining wearable biosensors and cloud-based data analytics with powerful proprietary algorithms, iRhythm distills data from millions of heartbeats into clinically actionable information. Through a relentless focus on patient care, iRhythm’s vision is to deliver better data, better insights, and better health for all. Our Mission Boldly innovate to create trusted solutions that detect, predict, and prevent disease. Our Core Values Lead with integrity; solve for the patient; think big, go fast; collaborate to win; and strive for better.


ITI A.I CyberSecurity Scoring

ITI
Company Information
Website:https://www.irhythmtech.com
Employees number:1,803
Number of followers:89,681
NAICS:3391
Industry Type:Medical Equipment Manufacturing
Homepage:irhythmtech.com
ITI Risk Score (AI oriented)
Between 650 and 699
logo
ITIMedical Equipment Manufacturing
Updated:
22/06/2026
676/1000
Weak
B
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
ITI Global Score (TPRM)
xxxx
logo
ITIMedical Equipment Manufacturing
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

ITI
ITIWeak
Current Score
676B (WEAK)
01000
2 incidents
-48 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
706Before Incident
Cyber Attack
22 Jun 2026ITI
iRhythm Technologies, Jamf, ShapedPlugin, Tanium, Fortinet, Microsoft and Texas Parks and Wildlife Department: 22nd June – Threat Intelligence Report

Cybersecurity Roundup: Major Breaches, AI Exploits, and Critical Vulnerabilities (Week of June 22)

677After Incident
CRITICAL-29
FORSHATANMICJAMIRHTEX1782147825
Cybersecurity Roundup: Major Breaches, AI Exploits, and Critical Vulnerabilities (Week of June 22) This week’s cybersecurity landscape saw significant breaches, supply chain attacks, and emerging AI-driven threats, alongside critical vulnerabilities under active exploitation. ### Major Breaches & Attacks - Texas Parks and Wildlife Department suffered a third-party breach via its license system vendor, exposing driver’s license details, passport numbers, emails, phone numbers, and addresses of 3.1 million hunting and fishing license customers. Social Security numbers and payment data remained unaffected. - ShapedPlugin, a WordPress plugin vendor, fell victim to a supply chain attack, delivering malicious updates for three paid plugins. The malware installed a hidden fake WooCommerce plugin to steal admin credentials, database access, and 2FA details, while modifying affected sites. The compromise stemmed from the vendor’s release infrastructure. - iRhythm Technologies, a U.S. digital health firm specializing in remote cardiac monitoring, confirmed a cyberattack where threat actors via a social engineering breach of third-party business applications stole protected health information, proprietary data, and personal records. Clinical systems were not impacted. - Klue, a market intelligence platform, disclosed a breach after attackers used compromised legacy integration credentials to steal OAuth tokens linked to customer Salesforce environments. The tokens enabled the theft of sales and customer data from clients, including Huntress, Recorded Future, Tanium, and Jamf. The Icarus extortion group claimed responsibility. ### AI-Driven Threats - Microsoft researchers uncovered AutoJack, an exploit chain where malicious web pages turn AI browsing agents into remote code execution vectors by abusing localhost trust, missing authentication, and unsafe parameter handling in AutoGen Studio’s MCP WebSocket interface. - SearchLeak, a prompt injection technique in Microsoft 365 Copilot Search, was revealed to exfiltrate data including emails, authentication codes, and OneDrive/SharePoint files via crafted links abusing Bing image fetches. Microsoft patched the flaw as CVE-2026-42824. - Researchers analyzed OpenClaw AI agent flaws, demonstrating how hidden contacts and phishing emails could trigger prompt injections, code execution, and data leaks, exposing local tools, secrets, and enterprise data through trusted external interactions. ### Critical Vulnerabilities & Exploits - Fortinet FortiSandbox vulnerabilities (CVE-2026-39813, CVE-2026-39808, CVE-2026-25089) are being exploited via unauthenticated API requests, enabling path traversal and root-level command execution, risking sandbox takeover and disruption of malware analysis and security workflows. - Microsoft confirmed CVE-2026-50656, a Defender zero-day allowing privilege escalation to SYSTEM via a race condition. A public proof-of-concept works on fully updated Windows 10 and 11, with a patch in development. - Cisco acknowledged active exploitation of CVE-2026-20262, an arbitrary file write flaw in Catalyst SD-WAN Manager. Authenticated attackers can overwrite system files and escalate to root, prompting patches for affected devices. - Splunk Enterprise’s CVE-2026-20253 is under active exploitation, allowing unauthenticated attackers to trigger file operations, potentially leading to remote code execution. Splunk confirmed limited attacks and released security updates. ### Threat Intelligence Highlights - A crypto clipboard hijacker, written in Rust and targeting Windows and macOS, was distributed via phishing sites and amplified on GitHub, SourceForge, YouTube, and legitimate news platforms. The malware swaps copied wallet addresses to redirect funds to attacker-controlled wallets.
INCIDENT DETAILS -
TYPE
Data BreachSupply Chain AttackCyberattackAI-Driven ThreatVulnerability Exploitation
MOTIVATION
Data TheftExtortionFinancial GainCredential HarvestingRemote Code Execution
IMPACT
Driver’s license detailsPassport numbersEmailsPhone numbersAddressesProtected health informationProprietary dataPersonal recordsSales dataCustomer dataOAuth tokensAdmin credentialsDatabase access2FA detailsWallet addressesLicense system vendorWordPress pluginsThird-party business applicationsSalesforce environmentsFortinet FortiSandboxMicrosoft DefenderCisco Catalyst SD-WAN ManagerSplunk EnterpriseDisruption of malware analysis and security workflowsSandbox takeoverPrivilege escalationFile operations leading to RCEYesYesNo
DATA BREACH
Driver’s license detailsPassport numbersEmailsPhone numbersAddressesProtected health informationProprietary dataPersonal recordsSales dataCustomer dataOAuth tokensAdmin credentialsDatabase access2FA detailsNumber Of Records Exposed: 3.1 millionHighYesYes
JUNE 2026
773Before Incident
Breach
08 Jun 2026ITI
iRhythm Technologies: iRhythm reports cybersecurity breach with protected health data accessed

iRhythm Discloses Data Breach Involving Patient and Proprietary Information

706After Incident
CRITICAL-67
IRH1781563219
iRhythm Discloses Data Breach Involving Patient and Proprietary Information iRhythm Technologies (Nasdaq: IRTC), a manufacturer of long-term cardiac monitoring devices, revealed on June 8 that it detected unauthorized access to data stored on certain third-party-hosted business applications. The company immediately activated its cybersecurity response plan and engaged external experts to investigate and contain the threat. By June 9, a threat actor contacted iRhythm, claiming to have exfiltrated sensitive data including proprietary information and protected health information (PHI) and demanded payment to prevent public disclosure. The following day, iRhythm confirmed that data had been stolen and classified the incident as material due to the volume of potentially affected records. The breach, which resulted from social engineering tactics, did not impact iRhythm’s clinical or medical device systems, patient safety, manufacturing operations, or financial reporting. The company also confirmed that no financial account or payment card information was compromised. As of the latest filing, there is no evidence of ongoing unauthorized access, and iRhythm maintains that the incident is unlikely to have a material financial impact. The company holds cybersecurity insurance, though coverage for all potential losses is not guaranteed. This incident adds to a growing trend of cyberattacks targeting medical technology firms. Earlier this year, Stryker suffered a wiper attack by an Iranian-backed hacktivist group in retaliation for U.S. and Israeli actions against Iran. Intuitive Surgical and Medtronic also reported breaches in March and April, respectively, though there is no indication that these incidents are connected.
INCIDENT DETAILS -
TYPE
Data Breach
MOTIVATION
Extortion
IMPACT
Data Compromised: Proprietary information and protected health information (PHI)Systems Affected: Third-party-hosted business applicationsOperational Impact: No impact on clinical or medical device systems, patient safety, manufacturing operations, or financial reportingIdentity Theft Risk: High (PHI exposed)Payment Information Risk: None (no financial account or payment card information compromised)
DATA BREACH
Proprietary informationProtected Health Information (PHI)Sensitivity Of Data: HighData Exfiltration: YesPersonally Identifiable Information: Yes (PHI)
MAY 2026
773Before Incident
APRIL 2026
773Before Incident
MARCH 2026
773Before Incident
FEBRUARY 2026
773Before Incident
JANUARY 2026
773Before Incident
DECEMBER 2025
773Before Incident
NOVEMBER 2025
773Before Incident
OCTOBER 2025
773Before Incident
SEPTEMBER 2025
773Before Incident
AUGUST 2025
773Before Incident
JULY 2025
773Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for ITI ?
?
What was ITI's A.I Rankiteo Cyber Score in May 2026 ?
?
What was ITI's A.I Rankiteo Cyber Score in April 2026 ?
?
What was ITI's A.I Rankiteo Cyber Score in March 2026 ?
?
What was ITI's A.I Rankiteo Cyber Score in February 2026 ?
?
What was ITI's A.I Rankiteo Cyber Score in January 2026 ?
?
What was ITI's A.I Rankiteo Cyber Score in December 2025 ?
?
What was ITI's A.I Rankiteo Cyber Score in November 2025 ?
?
What was ITI's A.I Rankiteo Cyber Score in October 2025 ?
?
What was ITI's A.I Rankiteo Cyber Score in September 2025 ?
?
What was ITI's A.I Rankiteo Cyber Score in August 2025 ?
?
What was ITI's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on ITI's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with ITI ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view ITI's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?