AMGEN INC.
ent_019e61c0e94dac06f4537abe77c31ed5
Disclosures
19
State AG · SEC 8-K · 11 jurisdictions
Multi-filing incidents
4
incidents joining 2+ filings here
Max affected reported
101,445
nationwide · State AG OR
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- AMGEN INC.
- Normalized
- amgen— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 62QBXGPJ34PQ72Z12S66
- SEC EDGAR CIK
- 0000318154
- Domain
- None on record
Disclosure history (19)newest first
- Texas State AGas victim2026-08-18
Amgen Inc. based in Thousand Oaks, California, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-07-02 and reported on 2026-08-18. 6,714 Texas residents were affected. 39,594 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Driver’s License number;Government-issued ID number (e.g. passport, state ID card);Financial Information (e.g. account number, credit or debit card number);Medical Information;Health Insurance Information;Date of Birth. Consumers were notified via U.S. Mail.
- New Hampshire State AGas victim2026-08-18
Amgen Inc. notified the NH Attorney General of a data security incident discovered on July 2, 2026, involving unauthorized third-party access to cloud-hosted systems. On July 18, 2026, it was determined that patient personal and health information, including names, emails, addresses, dates of birth, government IDs, medical info, and for some, SSNs and bank account numbers, was acquired. 80 New Hampshire residents were affected. Notices were mailed on August 17, 2026. The investigation is ongoing.
- California State AGas victim2026-08-17
Amgen Inc. notified patients of a cybersecurity incident where an unauthorized third party accessed cloud-hosted systems. On July 2, 2026, Amgen became aware of the access. By July 18, 2026, it was confirmed that files containing patient personal information, health information, government IDs, and some financial data were acquired. Amgen engaged forensic experts, contained the incident, and offered 24 months of identity monitoring via Kroll.
- Vermont State AGas victim2026-08-17
Amgen Inc. reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-08-17. The reporting organization type is Other Commercial. 24 Vermont residents were affected. Categories of data breached: Social Security Numbers, Health Records.
- Illinois State AGas victim2026-08-01
AMGEN INC filed a data-breach notice with the Illinois Attorney General in August 2026 (case 26-08-1399). The register records the breach as discovered on July 2, 2026. Personal information types reported: drivers license, financial account number, medical information, passport number, ssn. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- FEDERALSEC 8-Kas victim2026-07-31
Amgen Inc. filed an 8-K disclosing a material cybersecurity incident in July 2026 involving unauthorized access to third-party cloud environments. Proprietary data and patient protected health information (PHI) were exfiltrated. The investigation is ongoing, and the company has engaged forensic experts and implemented containment measures. No impact to manufacturing or financial reporting was identified.
- Massachusetts State AGas victim2024-09-25
Amgen Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2024-09-25. 73 Massachusetts residents were affected.
- California State AGas victim2024-09-25
Amgen Inc. notified individuals that their personal information may have been accessed due to a data security incident at its service provider, Sirva Relocation, LLC. Unknown actors accessed Sirva systems between August 16, 2023, and October 17, 2023, copying files containing employee data including names, SSNs, financial accounts, and health information. Sirva detected the activity on September 29, 2023. Amgen engaged in an investigation, secured the network, and offered identity monitoring services via Kroll.
- Indiana State AGas victim2024-09-25
Amgen Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2023-08-16 and was reported on 2024-09-25. 4 Indiana residents were affected. 903 individuals affected in total.
- New Hampshire State AGas victim2024-09-25
Amgen Inc. reported a supplemental data security incident involving its third-party service provider, Sirva, Inc. Sirva systems were accessed by unknown actors between August 16 and October 17, 2023, resulting in the copying of files containing personal information of Amgen employees and clients. Sirva detected suspicious activity on September 29, 2023. The incident affects 3 New Hampshire residents. Amgen engaged forensic review, notified law enforcement, and provided identity monitoring services via Kroll to affected individuals.
- Indiana State AGas victim2024-05-30
Amgen Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2024-02-21 and was reported on 2024-05-30. 45,980 Indiana residents were affected.
- Montana State AGas reporting2024-05-30
Cencora, Inc. notified Montana residents that on February 21, 2024, data from its information systems was exfiltrated. The incident involved personal information (name, address, DOB) and health information (diagnosis, medications) of individuals in patient support programs. Cencora engaged law enforcement and cybersecurity experts, contained the incident, and offered 24 months of credit monitoring.
- Washington State AGas reporting2024-05-30
Cencora, Inc. reported a cybersecurity incident involving its affiliate The Lash Group, LLC. On February 21, 2024, data was exfiltrated from information systems, potentially containing personal information including names, addresses, dates of birth, health diagnoses, and medications. The incident was discovered on February 21, 2024, and notification was sent on May 30, 2024. 14,081 Washington residents were affected. Cencora engaged law enforcement and cybersecurity experts, and provided 24 months of credit monitoring.
- Montana State AGas victim2023-08-23
Amgen Inc. disclosed a data incident affecting users of the Embark Application. Between June 3 and July 31, 2023, a vendor's coding error during data migration inadvertently disclosed patients' personal and health information to other users. Amgen detected the issue on June 30, 2023, and implemented an application update on July 31, 2023. Affected data included names, addresses, DOB, medication info, and health insurance IDs. Amgen offered 24 months of identity monitoring.
- California State AGas victim2021-06-22
Amgen Inc. disclosed a data breach involving its service provider, ZS Associates. An unauthorized party compromised a ZS service account and accessed files related to Amgen patients between April 21, 2021, and May 14, 2021. Amgen was notified on May 27, 2021. Affected data included names, email addresses, city, state, zip code, age, gender, insurance type, and marketing material preferences. No SSNs or financial data were involved. Amgen retained forensic investigators and is offering credit monitoring.
- Oregon State AGas victim2021-06-22
Amgen Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2021-06-22. The breach occurred during 4/21/2021 - 5/14/2021. The breach was discovered on 5/27/2021. 101,445 individuals were affected. Notice was sent on 6/22/2021.
- California State AGas victim2018-06-26
On February 21, 2018, Willis Towers Watson (WTW), a vendor of Amgen Inc., suffered a phishing incident that led to unauthorized access to personal information. The data involved included names, addresses, phone numbers, and claim/injury descriptions of individuals involved in civil litigation and workers' compensation claims against Amgen. WTW engaged a cybersecurity firm to investigate, activated security protocols, and offered affected individuals complimentary TransUnion credit monitoring.
- Massachusetts State AGas victim2014-11-20
Amgen Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2014-11-20. 7 Massachusetts residents were affected. The report records the breach type as electronic.
- Massachusetts State AGas victim2010-02-18
Amgen reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2010-02-18. 4 Massachusetts residents were affected. The report records the breach type as electronic.