FISERV, INC.
ent_019ded48095cf638abfbd38d9b314190
Disclosures
10
Leak Site · State AG · 4 jurisdictions
Multi-filing incidents
—
no multi-filing incident in sample
Max affected reported
160,000
as filed · State AG NH
Leak-site claims
3
unverified actor claims
Identity resolution
- Canonical name
- FISERV, INC.
- Normalized
- fiserv— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- GI7UBEJLXYLGR2C7GV83
- SEC EDGAR CIK
- 0000798354
- Domain
- fiserv.com
Disclosure history (10)newest first
- GLOBALLeak Siteas victim2026-08-12
Fiserv is a leading American financial technology company headquartered in Milwaukee, Wisconsin. It provides payment processing, banking software, and financial services technology to banks, credit unions, merchants, and other financial institutions worldwide. Its services include core banking systems, digital payments, card processing, and data analytics. Fiserv operates globally and is listed on the NASDAQ stock exchange.
- GLOBALLeak Siteas victim2026-08-05
Data exfiltrated included the following: Projects, Cad-files, files Windchil, Soft Total size: 874Gb Revenue: $21,200,000,000
- GLOBALLeak Siteas victim2026-05-03
Fiserv is a global financial technology company headquartered in Milwaukee, Wisconsin, United States. It provides financial services technology solutions including payment processing, core banking systems, digital banking platforms, and merchant acquiring services. Serving banks, credit unions, retailers, and businesses worldwide, Fiserv operates across the fintech and banking technology industry and is one of the largest providers of financial services infrastructure globally.
- Illinois State AGas victim2026-01-01
FISERV filed a data-breach notice with the Illinois Attorney General in January 2026 (case 26-01-701). The register records the breach as discovered on November 13, 2025. Personal information types reported: medical information. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Illinois State AGas victim2026-01-01
FISERV filed a data-breach notice with the Illinois Attorney General in January 2026 (case 26-01-728). The register records the breach as discovered on September 24, 2025. Personal information types reported: medical information. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Massachusetts State AGas victim2023-12-06
Fiserv reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-12-06. 19 Massachusetts residents were affected. The report records the breach type as electronic.
- Illinois State AGas victim2023-01-01
FISERV filed a data-breach notice with the Illinois Attorney General during 2023 (case 23-324). The register records the breach as discovered on December 11, 2022. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Illinois State AGas victim2023-01-01
FISERV filed a data-breach notice with the Illinois Attorney General during 2023 (case 23-154). The register records the breach as discovered on December 11, 2022. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Massachusetts State AGas victim2021-09-25
Fiserv reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-09-25. 12 Massachusetts residents were affected. The report records the breach type as electronic.
- New Hampshire State AGas reporting2008-12-12
Fiserv (via CheckFree business unit) notified New Hampshire AG regarding a Dec 2, 2008 incident where online bill payment traffic was redirected to a malicious site in Ukraine. Approximately 160,000 consumers were potentially exposed to malware attempting to steal credentials. Fiserv provided McAfee remediation and credit monitoring, and notified federal regulators including the FBI and FTC.
Supply-chain cascadesreviewed and confirmed
- FISERV, INC. supply-chain incident (2023)2023-10-05 – 2024-02-0110 organizations linked
Subsidiary disclosures (3)filed by group companies
◈ These filings were made by or about subsidiaries of FISERV, INC. — not by FISERV, INC. itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- Indiana State AGvia FIRST DATA MERCHANT SERVICES LLC2020-12-10
First Data Merchant Services, LLC reported a data breach to the Indiana Attorney General. 1 Indiana residents were affected. 216 individuals affected in total.
- California State AGvia First Data Corporation2012-05-11
First Data Corporation disclosed an administrative oversight where limited personal information (name, address, SSN) of approximately 108,500 merchants was shared with three third-party firms for testing verification and anti-fraud services in Jan-Feb 2012. First Data learned of the potential ambiguity in contract authorization on April 25, 2012. The data was deleted by the recipients at First Data's request. 15,399 California residents were affected.
- Massachusetts State AGvia First Data Corporation2012-05-10
First Data Corp. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2012-05-10. 2,530 Massachusetts residents were affected. The report records the breach type as electronic.