Cook Medical, a privately held medical device manufacturer, has disclosed a cybersecurity incident that gave an outside party access to certain company systems. Companies that maintain customer contact records and internal business communications have a responsibility to safeguard that information from unauthorized access.
Cook Medical’s Data Breach Investigation
Cook Medical, headquartered in Bloomington, Indiana, manufactures medical devices used in vascular treatments, critical care, surgery, and urology. According to a notice posted on the company’s own newsroom page on August 12, 2026, a Cook Medical employee was deceived by a social engineering attack on July 2, 2026, and inadvertently gave an outside party access to certain company systems. Cook Medical stated that it identified the unauthorized access and contained it quickly on the same day the incident occurred.
Cook Medical said its investigation, conducted with the support of an outside cybersecurity firm, found that the information involved was primarily business contact information for U.S. and Canadian customers, records of communications with Cook employees maintained within the company’s Salesforce system, employee names and company email addresses, and certain internal business files accessed via SharePoint. The company stated that, based on its review to date, it has no evidence that sensitive or protected data was accessed, and that the incident has not affected its products, manufacturing, or its ability to serve patients and customers.
Social engineering attacks, in which an employee is manipulated into granting access rather than a system being technically hacked, have become an increasingly common entry point for cybercriminals. Rather than exploiting a software vulnerability, attackers rely on deception, often posing as a trusted vendor, colleague, or IT representative, to convince an employee to hand over credentials or approve access. This method of attack has affected numerous companies in the medical device and healthcare sector over the past year, as the industry continues to be a frequent target for cybercriminals seeking valuable business and customer data.
Even when a company reports no evidence that sensitive personal data was taken, exposure of business contact information and internal communications can still create real risk. Threat actors who obtain this type of information sometimes use it to craft convincing follow-up phishing attempts, impersonating a company representative or vendor to extract further sensitive information from customers or employees.
When Did This Breach Occur?
According to Cook Medical’s own disclosure, the incident occurred on July 2, 2026, when an employee was deceived by a social engineering attack. The company stated that it identified and contained the unauthorized access the same day. Cook Medical publicly disclosed the incident on August 12, 2026, several weeks after it was first identified and contained.
What Information Was Breached?
According to Cook Medical’s notice, the information potentially involved included business contact information for U.S. and Canadian customers, records of communications with Cook employees maintained in the company’s Salesforce platform, employee names and company email addresses, and certain internal business files accessed through SharePoint. Cook Medical stated it has no evidence that sensitive or protected data, such as Social Security numbers or financial account information, was accessed.
What You Can Do
If you are a Cook Medical customer or employee, or have corresponded with Cook Medical, consider taking the following precautions:
- Be cautious of unexpected emails or calls claiming to be from Cook Medical, its employees, or affiliated vendors
- Verify the identity of anyone requesting sensitive information through a known, independently verified contact method
- Monitor your business and personal accounts for unfamiliar activity
- Keep records of any suspicious communications referencing Cook Medical
- Watch for any official follow-up communication from Cook Medical and follow the guidance it provides
File a Data Breach Lawsuit Against Cook Medical
Companies that maintain customer contact information and internal business communications have a responsibility to protect that data from unauthorized access. If you believe your information may have been compromised in this incident, you may have legal options.
Contact us at Class Action U, where we’ll connect you with a lawyer skilled in class action lawsuits. If you’ve been contacted about this breach, received notice, or discovered you were impacted, fill out our quick, easy, and secure form to sign up. There is no cost to reach out to our legal partner and no obligation after speaking with someone from our team.