Home / Latest

Hacking Group FulcrumSec Claims Data Theft from Novo Nordisk, Demands $25M
Image: Wikipedia
Latest

Hacking Group FulcrumSec Claims Data Theft from Novo Nordisk, Demands $25M

WireByte Staff · June 17, 2026

Cyber-extortion group FulcrumSec claims it stole 1.3 terabytes of data from Novo Nordisk, including drug research and employee records, after a two-month network intrusion. The group demanded $25 million but was reportedly not paid and is now seeking buyers for the stolen information, impacting a major pharmaceutical company.

Key points

  • Hacking group FulcrumSec claims to have stolen approximately 1.3 terabytes of data from Novo Nordisk, the Danish maker of Ozempic and Wegovy.
  • FulcrumSec alleges it spent over two months accessing Novo Nordisk's internal IT systems before detection.
  • The stolen data reportedly includes source code, proprietary drug information, clinical trial data, and employee/patient records.
  • The group demanded a $25 million ransom, which Novo Nordisk did not pay, and FulcrumSec is now reportedly seeking to sell the data.
  • Novo Nordisk has confirmed an unauthorized access incident, stated it is addressing the matter, and is in contact with authorities.

Cyber-extortion group FulcrumSec has claimed responsibility for a significant data breach at Danish pharmaceutical company Novo Nordisk. The group alleges it exfiltrated roughly 1.3 terabytes of sensitive information over a period of more than two months, following a prolonged intrusion into the company's internal IT networks.

FulcrumSec reportedly demanded a $25 million ransom for the data's privacy, a sum Novo Nordisk has stated it did not pay. The hacking group has since indicated it is now looking to find buyers for the stolen information. The alleged compromised data is said to be extensive, encompassing proprietary details on current and unreleased drugs, clinical trial data, employee and patient records, manufacturing facility information, and internal AI model data.

Novo Nordisk has acknowledged the cybersecurity incident, confirming unauthorized access to some internal IT systems. The company stated it takes the matter seriously, is maintaining operations of its main platforms, and is cooperating with relevant authorities. The authenticity of the data posted by FulcrumSec has not been immediately verified by external news agencies.

Sources

WireByte Staff — Editorial Team

The WireByte editorial team synthesises technology news from multiple primary sources, verifies the facts, and links every source. Articles are produced with AI assistance and reviewed under our editorial policy.