Biotechnology company Amgen says attackers stole corporate and patient data from cloud systems operated by third-party service providers. The company is investigating the incident and assessing whether it must notify affected individuals and regulators.
Amgen confirms cloud data theft
Amgen detected unauthorised activity in July 2026 and activated its cybersecurity response plan. The company said it contained the incident and brought in independent forensic experts to support the investigation.
The investigation found that attackers exfiltrated data from several cloud environments. In a filing with the US Securities and Exchange Commission, Amgen confirmed that the stolen information includes proprietary data and patient protected health information.
Patient and proprietary information may be affected
Amgen is still determining the full scope of the Amgen data breach. The company said attackers may also have accessed confidential business information, intellectual property, research and development data and additional patient records.
The California-based company develops medicines for serious conditions, including cancer, cardiovascular disease, inflammatory disorders and rare illnesses.
However, Amgen has not said which third-party cloud providers were involved or how the attackers gained access. It has also not disclosed the number of patients affected or linked the attack to a known threat group.
Company considers incident material
On 29 July, Amgen determined that the incident was material after reviewing the volume of potentially affected files and the possibility that they contained sensitive data.
Despite that assessment, the company does not currently believe the breach is reasonably likely to have a material effect on its financial condition or operating results.
Amgen said it will continue working with external cybersecurity specialists as the investigation progresses.
Patient notifications may follow
The company is evaluating its legal and regulatory notification requirements. It said it will notify affected patients where required.
It remains unclear whether the Amgen data breach involved a social-engineering attack against an employee account, a cloud service compromise or another intrusion method. There is also no public confirmation that the company has received an extortion demand.
Meta description: Amgen says a cloud data breach exposed proprietary information and patient health data stored with third-party service providers.


0 responses to “Amgen Cloud Data Breach Exposes Patient Health Information”