CONDUENT BUSINESS SERVICES, LLC
ent_019dd1b57f4c1ca5b726717dc8207918
Disclosures
25+
SEC 8-K · State AG · 8 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
112,952
as filed · State AG NH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- CONDUENT BUSINESS SERVICES, LLC
- Normalized
- conduent business— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 54930026CNAIP718XD30
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- conduent.com
- Corporate parent
- CONDUENT INCORPORATED— per GLEIF relationship records
Disclosure history (newest 25)newest first
- FEDERALSEC 8-Kas victim2026-09-10
Conduent Inc. filed an 8-K regarding a previously disclosed cybersecurity incident from January 2025 affecting Conduent Business Services, LLC. The filing discloses a settlement agreement in principle reached in August 2026 to resolve consolidated lawsuits from individuals who allegedly received notification letters that their personal information may have been affected. The settlement was not yet court-approved as of September 10, 2026.
- New Hampshire State AGas victim2026-04-27
Conduent Business Services, LLC filed a supplemental notice with the New Hampshire Attorney General on April 27, 2026, regarding a prior security incident. The filing discloses that notifications were sent to 4 additional New Hampshire residents. The affected data included names and Social Security numbers. The incident involves one or more covered entities for which Conduent acts as a service provider.
- California State AGas victim2026-04-27
Conduent Business Services, LLC disclosed a cyber incident where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The attacker obtained files containing personal information, including names, of clients served by Conduent. Conduent secured its networks, engaged forensic experts, restored systems, and notified law enforcement. No evidence of misuse was found.
- Illinois State AGas reporting2026-04-01
CONDUENT STATE & LOCAL SERVICES, INC. filed a data-breach notice with the Illinois Attorney General in April 2026 (case 26-04-1159). The register records the breach as discovered on January 13, 2025. Personal information types reported: financial account number, medical information, ssn. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- New Hampshire State AGas victim2026-03-24
Conduent Business Services, LLC filed a supplemental security incident notice with the New Hampshire Attorney General on March 24, 2026. The filing reports that notifications were sent to an additional 112,325 New Hampshire residents regarding a data security incident involving names and Social Security numbers. Conduent acts on behalf of covered entities/data owners and continues to provide notices.
- California State AGas victim2026-03-24
Conduent Business Services, LLC, a third-party printing, document processing, and back-office support services provider, discovered on January 13, 2025, that an unauthorized third party had accessed a limited portion of its network from October 21, 2024, to January 13, 2025, and obtained files containing personal information belonging to clients' customers. Conduent secured its network, engaged third-party forensic experts, restored operations, and notified law enforcement.
- Vermont State AGas victim2026-03-24
Conduent Business Services, LLC notified Vermont consumers of a cyber incident where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The breach exposed names and government identifiers (SSN, DOB, driver's license). Conduent engaged forensic experts, secured systems, notified law enforcement, and offered 24 months of credit monitoring.
- Massachusetts State AGas victim2026-02-10
Conduent Business Services, LLC disclosed a cyber incident where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The breach was discovered on January 13, 2025. Affected data includes names and potentially Social Security numbers for individuals associated with current or former health plans. Conduent secured its networks, engaged forensic experts, notified law enforcement, and is offering credit monitoring services.
- Maine State AGas victim2026-02-09
Conduent Business Services, LLC reported a cyber incident where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The breach affected 16,991 individuals, including 3 Maine residents. Personal information, including names and government identifiers, was obtained. Conduent engaged forensic experts, secured its network, and notified law enforcement. Affected individuals were offered credit monitoring services.
- Vermont State AGas victim2026-02-05
Conduent Business Services, LLC notified Vermont residents of a cyber incident discovered Jan 13, 2025, involving unauthorized access from Oct 21, 2024, to Jan 13, 2025. The incident affected files containing personal information (name, SSN, DOB, etc.) of individuals associated with health plans served by Conduent. Conduent engaged forensic experts, secured systems, notified law enforcement, and offered credit monitoring services.
- New Hampshire State AGas victim2026-02-02
Conduent Business Services, LLC filed a supplemental notice with the New Hampshire Attorney General on February 2, 2026, regarding a security incident. The filing reports that Conduent began notifying an additional 112,952 New Hampshire residents on behalf of covered entities. The affected personal information included names and Social Security numbers. This is a follow-up to a previous supplemental notice dated January 2, 2026.
- Vermont State AGas victim2026-02-02
Conduent Business Services, LLC notified Vermont residents of a cyber incident discovered on January 13, 2025. An unauthorized third party accessed Conduent's environment from October 21, 2024, to January 13, 2025, obtaining files containing personal information including names and government identifiers. Conduent secured its networks, engaged forensic experts, restored systems, and notified law enforcement. Affected individuals are offered 24 months of credit monitoring and identity restoration services.
- Massachusetts State AGas victim2026-02-02
Conduent Business Services, LLC disclosed a cyber incident where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The incident was discovered on January 13, 2025. Affected data includes personal information of individuals associated with current or former health plans, potentially including names, Social Security numbers, and health information. Conduent engaged forensic experts, secured networks, notified law enforcement, and is offering credit monitoring services.
- California State AGas victim2026-01-30
Conduent Business Services, LLC disclosed a cyber incident where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The attacker obtained files containing personal information, including names, of clients served by Conduent. Conduent secured its networks, engaged forensic experts, restored systems, and notified law enforcement. No evidence of misuse was found.
- Maine State AGas victim2026-01-30
Conduent Business Services, LLC reported a cyber incident where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The breach affected 5,875 individuals, including 2 Maine residents. Personal information, including names and government identifiers, was obtained. Conduent engaged forensic experts, secured its network, and notified law enforcement. Affected individuals are offered 12 months of credit monitoring.
- Nebraska State AGas victim2026-01-28
Conduent Business Services, LLC notified Nebraska residents of a data incident discovered on January 13, 2025. Unauthorized access occurred from October 21, 2024, to January 13, 2025. Conduent, a third-party service provider for health plans, experienced unauthorized access to files containing names and government identifiers (SSN, DOB). Conduent secured networks, engaged forensic experts, notified law enforcement, and is offering credit monitoring via Epiq. No evidence of misuse was found.
- Nebraska State AGas victim2026-01-28
Conduent Business Services, LLC notified Nebraska residents of a cyber incident discovered on January 13, 2025. Unauthorized access occurred from October 21, 2024, to January 13, 2025. Conduent, a third-party service provider for health plans, confirmed that files containing names and government identifiers (SSN, DOB) were accessed. Conduent secured networks, engaged forensic experts, notified law enforcement, and offered credit monitoring via Epiq. No evidence of misuse was found.
- California State AGas victim2026-01-02
Conduent Business Services, LLC disclosed a cyber incident where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The attacker obtained files containing personal information, including names, of clients served by Conduent. Conduent secured its networks, engaged forensic experts, restored systems, and notified law enforcement. No evidence of misuse was found.
- New Hampshire State AGas victim2026-01-02
Conduent Business Services, LLC filed a supplemental notice with the New Hampshire Attorney General on January 2, 2026, regarding a data security incident. The breach affected 12,666 New Hampshire residents, exposing names and Social Security numbers. Conduent, acting on behalf of covered entities/clients, is providing notifications to affected individuals. This is a follow-up to previous notifications sent in October, November, and December.
- Vermont State AGas victim2026-01-02
Conduent Business Services, LLC notified consumers of a data breach where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The incident exposed personal information including names and government identifiers (e.g., SSN) for a limited number of individuals. Conduent engaged forensic experts, secured its network, and notified law enforcement.
- California State AGas victim2025-12-18
Conduent Business Services, LLC disclosed a cyber incident where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The attacker obtained files containing personal information, including names, of clients served by Conduent. Conduent secured its networks, engaged forensic experts, restored systems, and notified law enforcement. No evidence of misuse was found.
- New Hampshire State AGas victim2025-12-18
Conduent Business Services, LLC filed a supplemental security incident notice with the New Hampshire Attorney General on December 18, 2025. The filing reports that Conduent began notifying an additional 44,010 New Hampshire residents regarding a data security incident. The affected personal information includes names and Social Security numbers. Conduent acts on behalf of covered entities and continues to provide notices to affected individuals.
- California State AGas victim2025-11-19
Conduent Business Services, LLC disclosed a cyber incident where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The attacker obtained files containing personal information, including names, of clients served by Conduent. Conduent secured its networks, engaged forensic experts, restored systems, and notified law enforcement. No evidence of misuse was found.
- New Hampshire State AGas victim2025-11-19
Conduent Business Services, LLC filed a supplemental notice with the New Hampshire Attorney General on November 19, 2025, regarding 915 additional NH residents affected by a cyber incident. Unauthorized access occurred from October 21, 2024, to January 13, 2025. Affected data included names and Social Security numbers. Conduent engaged forensic experts, secured networks, and notified law enforcement.
- California State AGas victim2025-10-31
Conduent Business Services, LLC disclosed a cyber incident where an unauthorized third party accessed its network from October 21, 2024, to January 13, 2025. The attacker obtained files containing personal information, including names, of clients served by Conduent. Conduent secured its networks, engaged forensic experts, restored systems, and notified law enforcement. No evidence of misuse was found.
Supply-chain cascadesreviewed and confirmed
- CONDUENT BUSINESS SERVICES, LLC supply-chain incident (2025)2025-10-08 – 2026-07-024 organizations linked