top of page

The Cyberattacks Hitting Irish Businesses in 2026 And the One Thing Most Are Missing

Sep 8
5 min read

On 26 August 2026, Boston Scientific confirmed it had suffered a cyberattack that disrupted its global operations.


Cyberattack

Staff at its Cork plant, one of three Irish facilities employing more than 7,000 people across the country, were told to work from home as recovery operations began. Information systems used to process and ship customer orders were affected. Shares fell 3.5% before markets opened.


Boston Scientific is a multinational with dedicated cybersecurity teams, incident response procedures and third-party specialists on call. And it still happened.


Earlier this year, Stryker, another medical technology giant with thousands of Irish employees was crippled by a cyberattack suspected of being carried out by an Iranian-backed group. Before that, there was Medibank.


The pattern is clear. Cyberattacks are not slowing down. They are accelerating. And while multinationals with dedicated security teams and significant IT budgets are being hit, the Irish SMEs that supply them, work alongside them and depend on the same digital infrastructure have far fewer defences in place.

This blog is about what Irish businesses of every size can learn from what keeps happening and the one thing most are still missing.



What a Cyberattack Actually Does to a Business


The public narrative around cyberattacks tends to focus on data theft. The more immediate and more damaging impact for most businesses is operational shutdown.


When a cyberattack hits an organisation, the first response is typically to isolate affected systems, to stop the spread. In practice, this means taking systems offline. Email. File servers. Cloud platforms. Order processing. Internal communications. Manufacturing systems. The organisation does not stop because data was stolen. It stops because the systems it depends on to operate every day are no longer accessible.


Boston Scientific staff in Cork were sent home not because their personal data was at risk. They were sent home because the systems they use to do their jobs were offline. A cyberattack is not just a data problem. It is a business continuity problem.


The question every Irish business should be asking:


If our core systems went offline tomorrow, email, cloud software, file storage, order processing, how long could we operate and what would it cost us?

Most Irish SMEs have never answered this question. The Boston Scientific attack is a reminder that it is worth asking before it becomes urgent.


Why Irish SMEs Are a Target


There is a common assumption among Irish SMEs that cyberattacks target large organisations. The reality is more uncomfortable.


Large organisations like Boston Scientific and Stryker make headlines when they are attacked because they are well known. But cybercriminals do not limit themselves to household names. Irish SMEs are attractive targets precisely because they are less likely to have dedicated security teams, incident response procedures or the kind of layered defences that make a well-resourced organisation harder to penetrate.


SMEs are also increasingly targeted through their supply chain relationships. A criminal who cannot get into a well-defended large organisation may look for a smaller supplier, partner or subcontractor with a connection to that organisation's systems. The SME becomes the entry point.


And Irish SMEs are more connected than they have ever been. Cloud software. Remote workers. Online order processing. Digital payment systems. Every connection is a potential entry point if the defences are not in place.


The Things Most Irish Businesses Have in Place


Most Irish businesses have taken some steps toward cybersecurity. Antivirus software on laptops and desktops. A firewall on the office router. Multi-factor authentication on email, if IT has pushed for it. Password policies that get enforced with varying degrees of consistency.


These are not nothing. But they address the entry point, not what happens after a threat gets through.


The Boston Scientific attack, like most successful cyberattacks, did not succeed because the organisation had no defences. It succeeded despite having defences in place. The question is not whether your business will face a threat, it is whether your business can contain it when one arrives.


The One Thing Most Irish Businesses Are Missing


Containment.


Most Irish businesses have no way to limit the spread of a cyberattack once it is inside their network. If ransomware lands on one device and the business has no containment mechanism in place, it moves. To file servers. To shared drives. To cloud backups. To every device on the same network. By the time it is identified, the damage is done.


Containment technology works by detecting unusual behaviour, file encryption activity, unusual data movement, lateral spread across the network, and isolating the affected system before the attack can propagate. It does not prevent an attack from arriving. It prevents a single compromised device from becoming a business-wide shutdown.


For Irish SMEs, this is the gap that most standard cybersecurity packages do not address. Antivirus protects at the entry point. Containment protects the rest of the business when something gets through the entry point.


The distinction matters:


An attack that reaches one device and is contained there is an incident. An attack that reaches one device and spreads to every system in the business is a crisis. The difference between those two outcomes is containment, and most Irish businesses do not have it.

What Irish Businesses Should Be Doing Now


The Boston Scientific attack happened on 26 August. The Stryker attack happened in March. Between those two events and the dozens of attacks that did not make national headlines, Irish businesses have had ample warning that the threat environment is real and active.


Here are the practical steps worth taking regardless of the size of your business:


•       Understand what systems your business depends on and what it would cost if they went offline for 24 hours, 48 hours, a week

•       Review whether your current cybersecurity provision addresses containment, not just entry point protection

•       Test your backup and recovery process, when did you last restore a file from backup, and how long would full recovery take

•       Ensure multi-factor authentication is enabled on every cloud platform your business uses, email, file storage, accounting software, CRM

•       Brief your team on the most common entry points, phishing emails, credential theft, social engineering, because most attacks begin with a human rather than a technical failure


None of these steps requires a large IT budget. They require attention, and a willingness to treat cybersecurity as an operational risk rather than a technical concern that sits with IT.



A Note on Connectivity and Cyber Resilience


There is a connection between an organisation's network infrastructure and its ability to respond to a cyberattack that is often overlooked.


A well-segmented network, where different systems are on separate logical networks rather than one flat network, limits the spread of an attack. If ransomware reaches a device on the guest Wi-Fi network, proper segmentation means it cannot easily reach the file server on the operations network. Segmentation is a connectivity architecture decision as much as it is a security decision.


At Fastcom, we work with Irish businesses to make sure their network infrastructure is right for the operation they are running including the security architecture that protects it. If you want to talk through what your current setup looks like and where the gaps might be, give us a call.


Talk to Fastcom about cyber resilience for your Irish business.


We provide business broadband, network solutions and connectivity services to Irish businesses, with the infrastructure and architecture that supports a more resilient operation. Irish-based support. No obligation.



Visit fastcom.ie/business-broadband-ireland or call +353 818 70 71 71

Comments


bottom of page