Ptechhub
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
PtechHub
No Result
View All Result

Conduent Breach Affected At Least 10.5M Victims: Disclosure

CRN by CRN
October 31, 2025
Home News
Share on FacebookShare on Twitter


The breach — which was discovered in January and has reportedly been claimed by the cybercriminal group SafePay — included the compromise of data including Social Security numbers and medical information.

A data breach discovered in January at solution provider Conduent affected at least 10.5 million individuals, according to a disclosure posted by the Oregon Attorney General’s Office.

The Texas Attorney General’s Office, meanwhile, has disclosed that data compromised in the attack included victims’ names, Social Security numbers, medical information and health insurance.

[Related: 10 Major Cyberattacks And Data Breaches In 2025 (So Far)]

The cybercriminal group SafePay has claimed responsibility for the Conduent breach, according to a BleepingComputer report. SafePay has also been linked to incidents including the disruptive ransomware attack against distribution giant Ingram Micro in July.

The Record had earlier reported that the Conduent breach claimed more than 10 million victims. In a statement provided to CRN Thursday, Conduent did not specify how many individuals were impacted in the breach.

“With respect to that incident, Conduent has agreed to send notification letters, on behalf of its customers, to individuals whose personal information may have been affected by this incident,” Conduent said in the statement, adding that it’s operating a call center to answer inquires on the incident.

The Florham Park, N.J.-based company said it has conducted a “detailed analysis of the affected files to identify the personal information contained therein, which was a time-intensive process.”

Breach notifications were sent out to impacted residents by Conduent between Oct. 8 and Oct. 24, the Oregon Attorney General’s Office disclosed.

Conduent, No. 29 on CRN’s Solution Provider 500 for 2025, had previously disclosed that the breach impacted personal data belonging to a “significant number of individuals.”

The breach was discovered in January but had begun as far back as October 2024, according to disclosures posted by the Oregon and Maine attorneys general websites.

‘Operational Disruption’

Conduent, which provides systems used to enable government services such as child support payments and food assistance, had previously said it experienced an “operational disruption” on Jan. 13 associated with the cyberattack.

In a filing in April with the U.S. Securities and Exchange Commission, Conduent said a threat actor was able to access a “limited portion” of the company’s IT environment during the incident.

Following an investigation, Conduent determined that the attacker “exfiltrated a set of files associated with a limited number of the Company’s clients” during the incident.

Experts that were engaged to evaluate the stolen data found it contained “a significant number of individuals’ personal information associated with our clients’ end-users,” Conduent said in the SEC filing.

Conduent was previously among the major solution providers struck by a wave of ransomware attacks during 2020.



Source link

Tags: CyberattacksCybersecurityData breaches
CRN

CRN

Next Post
Intel Looking To Acquire Startup AI Chip Developer SambaNova: Report

Intel Looking To Acquire Startup AI Chip Developer SambaNova: Report

Recommended.

Avaz Joins the PRC-Saltillo Community, Expanding Global AAC Access and Multilingual Innovation

Avaz Joins the PRC-Saltillo Community, Expanding Global AAC Access and Multilingual Innovation

October 23, 2025
45 Previously Unreported Domains Expose Longstanding Salt Typhoon Cyber Espionage

45 Previously Unreported Domains Expose Longstanding Salt Typhoon Cyber Espionage

September 9, 2025

Trending.

Spirit of openness helps banks get serious about stopping scams | Computer Weekly

Spirit of openness helps banks get serious about stopping scams | Computer Weekly

April 10, 2025
Microsoft Q3 Earnings Preview: What To Watch On Azure, Copilot, OpenAI

Microsoft Q3 Earnings Preview: What To Watch On Azure, Copilot, OpenAI

April 29, 2026
Weibo Publishes 2025 Environmental, Social and Governance Report

Weibo Publishes 2025 Environmental, Social and Governance Report

April 28, 2026
It Takes 2 Minutes to Hack the EU’s New Age-Verification App

It Takes 2 Minutes to Hack the EU’s New Age-Verification App

April 18, 2026
Chunghwa Telecom 2025 Form 20-F filed with the U.S. SEC

Chunghwa Telecom 2025 Form 20-F filed with the U.S. SEC

April 15, 2026

PTechHub

A tech news platform delivering fresh perspectives, critical insights, and in-depth reporting — beyond the buzz. We cover innovation, policy, and digital culture with clarity, independence, and a sharp editorial edge.

Follow Us

Industries

  • AI & ML
  • Cybersecurity
  • Enterprise IT
  • Finance
  • Telco

Navigation

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Subscribe to Our Newsletter

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Copyright © 2025 | Powered By Porpholio

No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs

Copyright © 2025 | Powered By Porpholio