Conduent Incorporated
ent_019dd17c77fb86a6d3b73b1844af3bea
Disclosures
3
SEC 10-K Item 1C · SEC 8-K · Leak Site · 2 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
—
no filed count in sample
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- Conduent Incorporated
- Normalized
- conduent— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300SFJ2D2CYY6CQ11
- SEC EDGAR CIK
- 0001677703
- Domain
- conduent.com
Disclosure history (3)newest first
- FEDERALSEC 10-K Item 1Cas victim2026-02-19
Conduent Incorporated (CNDT) disclosed a cybersecurity incident in its 2025 10-K filing, referred to as the January 2025 Cyber Event. The company processes substantial volumes of personal information and financial transactions for commercial and government customers. While specific technical details of the breach are not provided, Conduent maintains a liability on its balance sheet for expected remaining cash outlays related to the event. The company describes a robust cybersecurity risk management program aligned with NIST, PCI-DSS, and HIPAA standards, including active monitoring, third-party assessments, and an incident response plan.
- FEDERALSEC 8-Kas victim2025-04-14
On January 13, 2025, Conduent Incorporated experienced an operational disruption after a threat actor gained unauthorized access to a limited portion of its environment. The Company subsequently determined that the actor exfiltrated files associated with a limited number of clients, containing personal information of clients' end-users. Affected systems were restored within days; federal law enforcement was notified. Material non-recurring expenses were accrued in Q1 2025.
- GLOBALLeak Siteas victim2025-01-09
Conduent is a global company specializing in business process services. They provide digital platforms and services for both businesses and governments. Conduent's expertise covers sectors like healthcare, transportation, and financial services among others. Their services aim to improve user experiences, boost operational efficiency and increase client satisfaction. They were formerly a part of Xerox.
Subsidiary disclosures (newest 10)filed by group companies
◈ These filings were made by or about subsidiaries of Conduent Incorporated — not by Conduent Incorporated itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- ⛰️New Hampshire State AGvia CONDUENT BUSINESS SERVICES, LLC2026-04-27
Conduent Business Services, LLC filed a supplemental notice with the New Hampshire Attorney General on April 27, 2026, regarding a prior security incident. The filing discloses that notifications were sent to 4 additional New Hampshire residents. The affected data included names and Social Security numbers. The incident involves one or more covered entities for which Conduent acts as a service provider.
- 🐻California State AGvia CONDUENT BUSINESS SERVICES, LLC2026-04-27
Conduent Business Services, LLC disclosed a cyber incident where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The attacker obtained files containing personal information, including names, of clients served by Conduent. Conduent secured its networks, engaged forensic experts, restored systems, and notified law enforcement. No evidence of misuse was found.
- ⛰️New Hampshire State AGvia CONDUENT BUSINESS SERVICES, LLC2026-03-24
Conduent Business Services, LLC filed a supplemental security incident notice with the New Hampshire Attorney General on March 24, 2026. The filing reports that notifications were sent to an additional 112,325 New Hampshire residents regarding a data security incident involving names and Social Security numbers. Conduent acts on behalf of covered entities/data owners and continues to provide notices.
- 🍁Vermont State AGvia CONDUENT BUSINESS SERVICES, LLC2026-03-24
Conduent Business Services, LLC notified Vermont consumers of a cyber incident where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The breach exposed names and government identifiers (SSN, DOB, driver's license). Conduent engaged forensic experts, secured systems, notified law enforcement, and offered 24 months of credit monitoring.
- 🦞Maine State AGvia CONDUENT BUSINESS SERVICES, LLC2026-02-09
Conduent Business Services LLC, a back-office services provider to health plans, suffered an unauthorized network intrusion from Oct 21, 2024 to Jan 13, 2025. An external actor accessed a limited network portion and exfiltrated files containing health plan member PII/PHI. 3 Maine residents among 16,991 total affected. Systems restored; law enforcement notified. Epiq identity monitoring offered.
- 🍁Vermont State AGvia CONDUENT BUSINESS SERVICES, LLC2026-02-05
Conduent Business Services, LLC notified Vermont residents of a cyber incident discovered Jan 13, 2025, involving unauthorized access from Oct 21, 2024, to Jan 13, 2025. The incident affected files containing personal information (name, SSN, DOB, etc.) of individuals associated with health plans served by Conduent. Conduent engaged forensic experts, secured systems, notified law enforcement, and offered credit monitoring services.
- ⛰️New Hampshire State AGvia CONDUENT BUSINESS SERVICES, LLC2026-02-02
Conduent Business Services, LLC filed a supplemental notice with the New Hampshire Attorney General on February 2, 2026, regarding a security incident. The filing reports that Conduent began notifying an additional 112,952 New Hampshire residents on behalf of covered entities. The affected personal information included names and Social Security numbers. This is a follow-up to a previous supplemental notice dated January 2, 2026.
- 🍁Vermont State AGvia CONDUENT BUSINESS SERVICES, LLC2026-02-02
Conduent Business Services, LLC notified Vermont residents of a cyber incident discovered on January 13, 2025. An unauthorized third party accessed Conduent's environment from October 21, 2024, to January 13, 2025, obtaining files containing personal information including names and government identifiers. Conduent secured its networks, engaged forensic experts, restored systems, and notified law enforcement. Affected individuals are offered 24 months of credit monitoring and identity restoration services.
- 🐻California State AGvia CONDUENT BUSINESS SERVICES, LLC2026-01-30
Conduent Business Services, LLC disclosed a cyber incident where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The attacker obtained files containing personal information, including names, of clients served by Conduent. Conduent secured its networks, engaged forensic experts, restored systems, and notified law enforcement. No evidence of misuse was found.
- 🦞Maine State AGvia CONDUENT BUSINESS SERVICES, LLC2026-01-30
Conduent Business Services LLC, a third-party BPO/mailroom services provider, discovered Jan 13 2025 that an unauthorized actor accessed its network Oct 21 2024–Jan 13 2025, obtaining files tied to health plan members. 5,875 individuals affected (2 Maine residents). Systems restored; law enforcement notified; 12-month Epiq identity monitoring offered.