Have you ever considered that the very tools you pay for to keep your business running smoothly could be the same ones that take it down? It sounds like a plot from a bad tech-thriller, but for the medical giant Stryker, it recently became a reality.
I’ve been in the IT game a long time, and I’ve seen some creative hacks. But the recent Stryker cyberattack is a massive wake-up call for every business owner and IT manager out there. This wasn’t just a “break-in” where someone stole some files and left. The attackers got hold of the company’s own management tools and used them to wipe devices clean.
Imagine waking up to find that your remote support software: the stuff your IT team uses to fix your laptop from across town: has been turned into a digital flamethrower.
The Stryker Wake-Up Call: A Nightmare Scenario
When we talk about cybersecurity, we usually focus on firewalls, antivirus, and keeping hackers out. But what happens when the hacker is already inside, sitting in the driver’s seat of your administrative console?
In the Stryker incident, the attackers didn’t just find a vulnerability in a piece of software. They compromised the management infrastructure itself. Once they had the keys to the kingdom, they used the company’s internal tools to push out commands to wipe workstations and servers.
For an IT manager, this is the ultimate nightmare. You’re watching your fleet of devices disappear in real-time, and the very system you’d usually use to stop an attack is the one carrying it out. It’s like having a security guard who decides to use his master key to let the burglars into every single room in the building.
The Skeleton Key Problem
The tools we use for Remote Monitoring and Management (RMM) are incredibly powerful. They allow us to deploy updates, fix bugs, and monitor health across thousands of machines simultaneously. In the right hands, they are the backbone of efficient Managed IT Services NYC.
However, in the wrong hands, that same power becomes a skeleton key for hackers. If an attacker gains access to your RMM or remote support tool, they don’t need to find a way to bypass your antivirus on every individual computer. They just tell the RMM to turn the antivirus off. Or, as we saw with Stryker, tell it to format the hard drive.
If your remote support or management software isn’t locked down with strict Multi-Factor Authentication (MFA) and constant monitoring, you are essentially leaving that skeleton key under the doormat.
Why “Set and Forget” IT is Dead
I see this a lot with NYC businesses. A company hires an IT guy or a small firm to set up their systems, they install some management software, and then they “set it and forget it.” They assume that because they have the tools in place, they are protected.
That logic doesn’t work in 2026.
The tools themselves need to be managed. You need to be auditing who has access, when they are using it, and what commands are being sent through the system. For any business operating today, especially in a high-stakes environment like New York, “setting and forgetting” your IT infrastructure isn’t just lazy: it’s dangerous.
We help our clients audit their management infrastructure through our Cybersecurity Protection NYC programs. We look at the tools meant to help and ensure they don’t become the tools that destroy.
The MFA Mandate: No Exceptions
If you are reading this and you don’t have MFA (Multi-Factor Authentication) on your administrative tools, stop reading and go turn it on. Right now. I’m serious.
MFA is the single most effective barrier against the kind of credential hijacking that leads to these management-tool-based attacks. But it’s not just about having MFA; it’s about how it’s implemented. Are you using SMS codes? Because those can be intercepted. You should be using hardware keys or authenticator apps at a minimum.
In a professional environment, every single point of entry into your management software should be guarded. If a tool has the power to wipe a drive, it should require more than just a password to access.
Auditing Your Management Infrastructure
So, how do you know if your tools are working for you or against you? It starts with a comprehensive audit. You need to ask yourself (and your IT provider) some tough questions:
- Who has access? Are there old admin accounts for employees who left the company three years ago?
- What permissions do they have? Does every technician need “Full Wipe” authority, or can their permissions be limited?
- Where is the logging? If someone runs a script to delete files across the network, do you have a log of who initiated it and from what IP address?
- Is the software updated? Ironically, management tools themselves often have vulnerabilities. If you aren’t patching your patch-management software, you’re in trouble.
At New York Computer Help, we specialize in Remote IT Support NYC that prioritizes security over mere convenience. We don’t just use the tools; we secure the tools.
Joe’s Tech Review: The Admin’s Shield (2026 Edition)
To stay secure while managing these high-powered tools, you need the right hardware. Lately, I’ve been testing the Lenovo ThinkPad X1 Carbon Gen 14.
In 2026, this machine remains the gold standard for IT professionals. Why? Because it integrates hardware-level security that works seamlessly with modern management suites. The Gen 14 features a dedicated “Secure Enclave” chip that handles biometric data and encryption keys separately from the main OS.
If I’m an IT admin logging into a sensitive RMM console, I want to know that my own device isn’t compromised. The X1 Carbon’s physical webcam shutter and built-in privacy guard are great, but it’s the “Self-Healing BIOS” that really wins me over. If a hacker tries to corrupt the firmware to gain persistence, the laptop detects it and rolls back to a safe version automatically.
It’s fast, it’s light, and it’s built like a tank. If you’re the person holding the keys to your company’s infrastructure, you shouldn’t be doing it from a five-year-old consumer laptop. You need a dedicated, secure workstation.
Moving Toward a “Zero Trust” Reality
The future of business IT isn’t just about better passwords. It’s about “Zero Trust.” This means the system assumes every user and every device is a potential threat until proven otherwise.
Even if I’m the CEO, the system shouldn’t just let me wipe a server because I have the right password. There should be checks and balances. Maybe a second admin has to “approve” a high-risk command. Maybe the command can only be run from a specific, verified office IP address.
This might sound like it adds “friction” to the workday, but compared to the friction of losing every piece of data your company owns, it’s a very small price to pay.
How NYC Businesses Can Protect Themselves
New York is a fast-paced environment. We want things done yesterday. But speed without security is just a faster way to fail.
If you’re running a business in the city, you need to ensure your IT partner is looking at the “invisible” parts of your network. Everyone sees the fancy new laptops and the fast Wi-Fi. No one sees the RMM tool sitting in the background with a 12-character password and no MFA.
We’re here to help you shine a light on those dark corners. Whether it’s a one-time audit or ongoing support, we make sure your management tools stay on your side.
Final Thoughts: Don’t Be the Next Headline
The Stryker attack was a disaster for them, but it can be a lesson for you. Don’t wait for a breach to realize that your “helpful” IT tools have a dark side.
Take a look at your infrastructure today. Talk to your IT team. Ask them about MFA, ask them about “Least Privilege” access, and ask them how they are securing the tools they use to support you.
If you aren’t happy with the answers, give us a call. We’ve been helping New Yorkers navigate the changing tech landscape for decades, and we’re not stopping now. Let’s make sure the only thing your management tools are wiping is the stress off your plate.
Ready to lock down your network? Imagine a workforce working cohesively, supported by tools that are as secure as they are powerful. That future is possible: you just have to take the first step.
Stay safe out there.
: Joe Silverman, CEO, New York Computer Help
Note: Some images in this article may be AI-generated.


