HomeSecurityConduent: New details on last year's data breach

Conduent: New details on last year's data breach

A data breach at Conduent appears to be affecting far more people than initially disclosed, with the number of victims potentially reaching tens of millions of people across America.

Conduent

A attack ransomware that took place in January 2025 disrupted Conduent's operations for several days. In addition to encrypting systems, there was also a data breach that affected at least 15.4 million people in Texas alone (about half the state's population). Conduent had said in October that 4 million people statewide were affected.

Another 10.5 million people are affected in Oregon, according to the state attorney general.

See also: Substack data leak exposed emails and phone numbers

Conduent has also notified hundreds of thousands of people in Delaware, Massachusetts, New Hampshire and other states, according to data breach notifications seen by TechCrunch.

Conduent: What data was breached?

The stolen data includes individuals' names, social security numbers, medical data, and health insurance information.

Conduent: New details on last year's data breach

As one of the largest government contractors today, Conduent manages and processes large amounts of personal and sensitive information on behalf of large companies, government departments, and several U.S. states. The company says its technology and operational services affect more than 100 million people in the United States through various government health programs.

See also: Cyberspy group hacked governments and critical infrastructure in 37 countries

Conduent spokesman Sean Collinssaid the company is working to “conduct a detailed analysis of the affected files to identify the personal information” that was obtained in the breach. However, he did not say how many data breach notifications the company has sent out to date.

The company has revealed few details about the attack. Conduent disclosed the cyberattack in April 2025 (although it had taken place in January).

The Safeway ransomware claimed responsibility for the breach, claiming to have stolen over 8 terabytes of data.

Conduent: New details on last year's data breach

In a later filing with the SEC, the company said the stolen datasets “contained a significant amount of personal information of individuals associated with our customers’ end users,” referring to its corporate and government customers.

See also: DragonForce ransomware targets critical business infrastructure

Conduent also said it is continuing to notify individuals whose data was stolen in the breach and plans to complete notification by early 2026. The company did not give a more specific timeline.

Selecting the team

🔒 Protect your privacy with Proton VPN

Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.

  • ✔ No-logs, based in Switzerland (except 14-Eyes)
  • ✔ NetShield: blocks ads, trackers & malicious domains
  • ✔ Covers all devices — free version available
Try Proton VPN for free — 30-day money-back guarantee →

The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Digital Fortress
Digital Fortresshttps://www.secnews.gr
Pursue Your Dreams & Live!

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS