Incident Response

Conduent Says Names, Social Security Numbers Stolen in Cyberattack

The business services provider confirms personal information such as names and Social Security numbers was stolen in a January cyberattack.

The business services provider confirms personal information such as names and Social Security numbers was stolen in a January cyberattack.

Business services provider Conduent has notified the Securities and Exchange Commission (SEC) that personal information was stolen in a disruptive cyberattack in January this year.

The incident was disclosed publicly after Oklahoma Human Services and the Department of Children and Families in Wisconsin reported disruptions caused by network issues at Conduent. Roughly 10 days later, the company said it had restored all the impacted systems.

In a fresh filing with the SEC, Conduent said it was able to restore normal operations “within days, and in some cases, hours,” noting that the incident did not have a material impact on operations.

However, the company also revealed that “the threat actor exfiltrated a set of files associated with a limited number of the company’s clients,” and that the files contained “a significant number of individuals’ personal information associated with our clients’ end-users”.

Responding to a SecurityWeek inquiry, Conduent revealed that the compromised personal information includes names, addresses, and Social Security numbers. 

“The company continues its efforts to understand the full nature and scope of that affected data and will partner with its affected clients to provide appropriate notifications under the law,” Conduent said. 

Advertisement. Scroll to continue reading.

Conduent also noted that a third-party has confirmed that its environment is secure and that there has been “no further known malicious activity since the incident.” 

The business services provider has not disclosed details about the cyberattack but the Safepay ransomware gang publicly added the company to its Tor-based leak site in February. 

“To the company’s knowledge, the exfiltrated data has not been released on the dark web or otherwise publicly,” Conduent told the SEC, which suggests that it might have negotiated with the attackers to prevent the data leak.

Related: Hertz Discloses Data Breach Linked to Cleo Hack

Related: PowerSchool Portal Compromised Months Before Massive Data Breach

Related: 18,000 Organizations Impacted by NTT Com Data Breach

Related: Breach at Schools Hit After Retirement Services Firm Hit by Ransomware

Related Content

Data Breaches

The cybercrime gang has listed major companies such as Shell, Philips, Fiserv, Zebra, Mindray, and Largan Precision.

Cybercrime

Maksim Silnikau was the creator and administrator of the ransomware group and involved in Angler EK’s distribution.

Data Breaches

An extortion group stole personal, financial, and medical information from the hospital’s network.

Data Breaches

The bank holding company was hacked in June, but the investigation into the incident continues.

Data Breaches

The physical security firm says its alarm monitoring and system functionality have not been affected.

Ransomware

The INC Ransomware gang has been targeting vulnerable SMA1000 appliances for root access and lateral movement.

Data Breaches

Hackers were detected on Analog Devices systems in June, and an investigation found that they stole files.

Data Breaches

Ernst & Young previously confirmed that personal and financial information was stolen from a third-party management platform.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version