Print to PDF: Ctrl+P → Destination: Save as PDF → Margins: None → Background graphics: On

#CyberWeekly
WEEK 11 · MAR 6 - MAR 12, 2026
Devices Wiped Worldwide
Iran-linked Handala claims it wiped 200,000 devices at medtech firm Stryker across 79 countries; Stryker confirmed a disruptive attack
Platform: Learn Library Now Maps to CyFun Controls
Belgium Helps Bust LeakBase — 142K Stolen-Data Traders
March Patch Tuesday: Zero-Day in SQL Server
Easy Cyber Protection
#CyberWeekly · Week 11
1/4

Wiper attack at Stryker: Handala claims 200,000 devices wiped, and the lesson is your own IT admin tools

On March 11, Iran-linked hacktivist group Handala claimed it wiped over 200,000 laptops, phones, and servers at medtech giant Stryker in a single morning.

BleepingComputer: Stryker attack → https://www.bleepingcomputer.com/news/security/medtech-giant-stryker-offline-after-iran-linked-wiper-malware-attack/

#CyberWeekly · Week 11
2/4

Platform Spotlight: Every learn article now shows you which CyFun controls it covers

Reading a news story about a wiper attack and wondering which CyFun control covers MDM security? You can now find out in one click.

Explore the learn library → https://easycyberprotection.com/learn/

#CyberWeekly · Week 11
3/4

Belgium helped take down LeakBase — the stolen-credential market with 142,000 users

On March 3-4, Europol coordinated a global law enforcement operation that dismantled LeakBase, one of the internet's largest stolen-credential trading forums.

Europol: Operation LEAK → https://www.europol.europa.eu/media-press/newsroom/news/major-data-leak-forum-dismantled-in-global-action-against-cybercrime-forum

#CyberWeekly · Week 11
4/4

March Patch Tuesday: patch your SQL Server now — zero-day actively exploited

Microsoft's March 2026 Patch Tuesday dropped 84 fixes including two actively exploited zero-days, and one of them is in SQL Server.

BleepingComputer: March Patch Tuesday → https://www.bleepingcomputer.com/news/microsoft/microsoft-march-2026-patch-tuesday-fixes-2-zero-days-79-flaws/

#CyberWeekly · Week 11

Correction

Correction (2026-09-26): The lead item used to say, as fact, that 200,000 devices were wiped at Stryker across 79 countries using Microsoft Intune, with 50TB stolen. On this date the cover line and item title were reworded and the body was annotated inline to attribute these claims. The 200,000, 79 and 50TB figures are the attackers' (Handala's) own claims, as quoted by BleepingComputer on 11 March 2026, not confirmed numbers. Stryker confirmed a disruptive cyberattack on its Microsoft environment but did not confirm the device or country counts, and the reporting does not establish that Intune was the tool used to wipe the devices.

Read the full issue
4 stories. Context that matters.
Belgian cybersecurity, weekly.
Scan to read online
https://easycyberprotection.com/cyberweekly/2026/week-11
Follow #CyberWeekly
easycyberprotection.com