Novocure
Profile
Organisation tracking is available to eligible accounts.
Profile narrative
Novocure is a medical technology firm headquartered in Switzerland that develops and commercialises therapeutic solutions for solid tumour cancers. Its core product offering centres on tumour treating fields (TTFields), a non-invasive treatment modality that uses alternating electric fields to disrupt cancer cell division. The company primarily serves oncology patients, with a notable presence in the U.S. healthcare market as evidenced by its patient base in the disclosed cybersecurity incident. As a medical device and therapy provider operating across regulated health sectors, Novocure's commercial activities involve compliance with stringent healthcare and medical device oversight in the jurisdictions where it operates.
The organisation has a patient reach that includes approximately 1,400 U.S. patients whose internal ID numbers were exposed in a mid-August 2026 cyberattack. Beyond patient information, the incident also involved the exposure of some employee contact details, though no patient names or treatment device data were reported as compromised. The threat actor responsible for the breach has not been publicly disclosed. Novocure has confirmed the incident, indicating transparent acknowledgement of the event, and engaged with relevant stakeholders regarding the affected records. The scope of the breach, while contained to specific data categories, highlights the types of information the company maintains, including internal patient identifiers and employee records, reflecting its operational footprint in the U.S. healthcare delivery and corporate employment domains.
Operating in the medical technology and oncology space, Novocure occupies a specialised sector position by focusing on a novel therapeutic modality that differentiates it from conventional oncology treatment providers. Its regulatory role involves adhering to healthcare data protection standards, given the sensitive nature of the patient and employee information it handles. The company's Swiss headquarters suggests a multinational corporate structure, with its U.S. patient base indicating cross-border operational reach. No parent company or subsidiary relationships have been disclosed in the available information, and ownership details beyond the firm's independent status as a medical technology company remain unspecified. The absence of disclosed threat actor information and the limited categories of data involved in the incident point to a targeted intrusion rather than a broad system-wide compromise.
Incidents
1 incident linked to this organisation.