Open report — full analysis, no account required.

Sign up to generate reports and read filings that aren't on the open list.

Sign up free

Get notified when MDT files again. Create a free account and we'll email you the moment its next filing is analyzed.

Get filing alerts
NYSE: MDT Medtronic plc 8-K

Medtronic discloses unauthorized access to corporate IT systems, no product or operational impact

Filed April 27, 2026 · Period ending April 24, 2026 · ~1 min read

4 key changes 2 high relevance 2 sections

Key Changes

  • high

    Unauthorized third party accessed data in certain corporate IT systems on April 24, 2026; company activated incident response protocols and engaged external cybersecurity experts

    Item 7.01 — Regulation FD Disclosure verify on EDGAR →
  • high

    Investigation found no impact to products, patient safety, customer connections, manufacturing, distribution, or financial reporting systems; company does not expect material financial impact

    Item 7.01 — Regulation FD Disclosure verify on EDGAR →
  • medium

    Corporate IT systems are segregated from product networks and manufacturing operations; hospital customer networks remain separate and managed by customers' IT teams

    Exhibit 99.1 view on EDGAR →
  • medium

    Company investigating whether personal information was accessed and will provide notifications and support services to affected individuals as needed

    Exhibit 99.1 view on EDGAR →

Summary

Medtronic disclosed a cybersecurity incident involving unauthorized third-party access to certain corporate IT systems, discovered and announced on April 24, 2026. The company immediately contained the breach, activated incident response protocols, and engaged external cybersecurity experts to investigate and remediate.

The investigation is ongoing to determine the full scope of data accessed, including whether personal information was compromised. For retail investors, the key takeaway is that Medtronic's network architecture appears to have limited the breach's impact.

Corporate IT systems are segregated from product networks and manufacturing operations, and hospital customer networks remain separate and managed by customers' own IT teams. The company's investigation to date has found no impact to medical devices, patient safety, customer connections, manufacturing, distribution, or financial reporting systems. Medtronic does not currently expect the incident to materially affect its business or financial results, though the investigation continues and notification obligations to affected individuals remain pending.

Section-by-Section Diff

Event · Item 7.01 — Regulation FD Disclosure

~700 words

Medtronic disclosed unauthorized third-party access to certain IT systems; no impact identified on products, patient safety, or operations.

1 Added
Added Impact assessment high

Added in current filing · verify on EDGAR →

Based on its investigation to date, Medtronic has not identified any impact to its products, patient safety, connections to customers, manufacturing and distribution operations, financial reporting systems, or ability to meet patient needs. In addition, the Company does not currently expect the incident to have a material impact on its business or financial results.

The company's investigation has found no impact to products, patient safety, customer connections, manufacturing, distribution, or financial reporting systems. Medtronic does not currently expect the incident to materially affect its business or financial results, though the investigation is ongoing and forward-looking statements acknowledge potential risks.

Event · Exhibit 99.1

Medtronic disclosed unauthorized access to certain corporate IT systems with no identified impact on products, patient safety, or operations.

3 Added
Added Cybersecurity incident medium

Added in current filing · view on EDGAR →

Medtronic has determined that an unauthorized party accessed data in certain Medtronic corporate IT systems.

The company disclosed a data breach involving unauthorized access to corporate IT systems. Medtronic states it has not identified any impact to products, patient safety, customer connections, manufacturing and distribution operations, financial reporting systems, or ability to meet patient needs. The company activated incident response protocols and engaged cybersecurity experts.

Added Personal information and notifications medium

Added in current filing · view on EDGAR →

We are working to identify any personal information that may have been accessed and will provide notifications and support services as needed.

Medtronic is investigating whether personal information was accessed in the breach and committed to notifying affected individuals and providing support services. The scope of personal data exposure remains under investigation.

Added Financial impact assessment high

Added in current filing · view on EDGAR →

We currently do not expect a material impact on our business or financial results.

The company stated it does not currently expect the cybersecurity incident to have a material impact on its business or financial results, though the investigation is ongoing.

Was this report useful?

Figures/quotes linked to EDGAR · Narrative written by AI · Jun 22, 2026 · How we verify