Sev0AI security incidents, tracked

All incidents / Supply chain and access

Novo Nordisk breach included theft of internal AI model assets

Novo Nordisk, disclosed 11 Jun 2026. Supply chain and access Data exposed High

Novo Nordisk disclosed that attackers accessed internal systems and copied non-public data, including pseudonymised clinical trial data and internal AI model assets. The group claiming responsibility said it entered through a GitHub access token and took 1.3 TB; Novo reportedly refused a ransom demand.

Disclosed
11 Jun 2026
Organization
Novo Nordisk
Vendor
Other
Kind of AI
Model or package
AI's role
AI was the target
How it happened
Supply chain and access: Stolen token or key
Harm
Data exposed
Data involved
Health, Model weights, Internal documents
Reach
One organization
Severity
High
Model at fault
No
Status
Confirmed
Country
DK

Sources

  1. https://www.novonordisk.com/news-and-media/latest-news/incident-update.html
  2. https://www.securityweek.com/ozempic-maker-novo-nordisk-says-hackers-breached-it-systems/
  3. https://www.bleepingcomputer.com/news/security/pharmaceutical-giant-novo-nordisk-discloses-security-breach/

Related incidents

Data for this record: incidents.json. Cite as: Sev0, "Novo Nordisk breach included theft of internal AI model assets", https://sev0.fyi/incidents/2026-06-11-novo-nordisk-ai-model-assets/