Ransomware and extortion group FulcrumSec breached Novo Nordisk’s network, spending over two months exfiltrating roughly 700,000 files (about 1.3TB) before the company disclosed unauthorized access to internal IT systems on June 11, 2026. The group claims to have stolen drug research and clinical trial data, employee, patient and physician records, and details of the company’s proprietary AI/ML models, and demanded a $25 million ransom that Novo Nordisk has not paid.