Inotiv, Inc.
ent_cd8a39266cf82207
Disclosures
14
State AG · SEC 8-K · Leak Site · SEC 10-K Item 1C · 8 jurisdictions
Incidents
3
filings grouped by incident
Max affected reported
10,482
nationwide · State AG IN
Leak-site claims
2
unverified actor claims
Identity resolution
- Canonical name
- Inotiv, Inc.
- Normalized
- inotiv— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- 0000720154
- Domain
- inotiv.com
Disclosure history (14)newest first
- ⭐Texas State AGas victim2025-12-29
Inotiv, Inc. based in West Lafayette, Indiana, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-12-17 and reported on 2025-12-29. 940 Texas residents were affected. 10,482 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Driver’s License number;Government-issued ID number (e.g. passport, state ID card);Financial Information (e.g. account number, credit or debit card number);Medical Information;Health Insurance Information;Other;Date of Birth. Consumers were notified via U.S. Mail.
- 🦞Maine State AGas victim2025-12-23
Inotiv, Inc. (West Lafayette, IN) reported an external system breach (hacking) that occurred on August 5, 2025 and was discovered on December 17, 2025. The breach affected 10,482 individuals total, with 7 Maine residents impacted. Upon detection, Inotiv contained the incident, engaged external cybersecurity specialists, and notified law enforcement. Affected individuals were offered 24 months of Experian IdentityWorks credit monitoring. Consumer notification was sent December 23, 2025.
- ⛰️New Hampshire State AGas victim2025-12-23
Inotiv, Inc. submitted a supplemental notice to the New Hampshire Attorney General regarding a cybersecurity incident occurring between August 5-8, 2025. The company discovered on November 21, 2025 that a threat actor may have acquired personal information, including names, SSNs, tax IDs, DOBs, and health insurance info. A total of 14 New Hampshire residents were potentially affected. Inotiv notified 11 residents on December 2, 2025, and subsequently identified 3 additional affected residents and 1 resident with additional data types, notifying them on December 23, 2025. The company offered 24 months of credit monitoring via Experian.
- 🐻California State AGas victim2025-12-23
Inotiv, Inc. filed a breach notification with the California AG covering an incident that occurred August 5–8, 2025. The notification letter is an update to an earlier December notification. Affected individuals were offered 24 months of complimentary Experian IdentityWorks credit monitoring and identity restoration services. The cause and specific data types affected are not fully detailed in the available attachment.
- 🍁Vermont State AGas victim2025-12-22
Inotiv notified consumers of a data breach involving unusual activity. The company engaged external cybersecurity specialists, notified law enforcement, and is offering 24 months of credit monitoring and identity theft protection via Experian. Data types affected include identity information.
- ⛰️New Hampshire State AGas victim2025-12-02
Inotiv, Inc. filed a breach notification with the New Hampshire Attorney General on December 2, 2025, regarding unauthorized access to its systems. The company engaged external cybersecurity specialists and law enforcement to investigate and contain the incident. Inotiv is offering 24 months of complimentary credit monitoring and identity theft protection services through Experian IdentityWorks to affected individuals.
- 🐻California State AGas victim2025-12-02
Inotiv, Inc. reported a data breach occurring between August 5 and August 8, 2025. The incident involved unauthorized access to personal information, including Social Security Numbers and basic identity data, for both adults and minors. Inotiv contained the incident, engaged external cybersecurity specialists, and notified law enforcement. The company is offering 24 months of credit monitoring and identity theft protection via Experian IdentityWorks to affected individuals.
- 🦞Maine State AGas victim2025-12-02
Inotiv, Inc. reported an external system breach (hacking) occurring August 5–8, 2025, discovered November 21, 2025. A total of 9,542 individuals were affected nationwide, with 5 Maine residents impacted. The company contained the incident, engaged external cybersecurity specialists, and notified law enforcement. Affected individuals were offered 24 months of Experian IdentityWorks credit monitoring and identity theft protection.
- 🏎️Indiana State AGas victim2025-12-02
Inotiv Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2025-08-05 and was reported on 2025-12-02. 3,158 Indiana residents were affected. 10,482 individuals affected in total.
- FEDERALSEC 8-Kas victim2025-09-25
Inotiv, Inc. filed an 8-K on September 25, 2025, disclosing a cybersecurity incident (the 2025 Cybersecurity Incident) referenced in a prior August 18 filing. The incident impacted personally identifying information and protected health information of individuals in the United States. Three putative class actions (Doyal, Merrell, Wagner) were filed alleging harm from the breach. The Company states the investigation is ongoing, the full scope is unknown, and it has not yet determined if the incident is material. Operations are partially disrupted but product delivery continues.
- GLOBALLeak Siteas victim2025-08-11
Inotiv, Inc. is a publicly USA traded contract research organization (CRO) that provides nonclinical and analytical drug discovery and development services to the pharmaceutical and medical device industries.As a leading contract research org ...
- FEDERALSEC 8-Kas victim2025-08-08
On August 8, 2025, Inotiv, Inc. became aware of a cybersecurity incident in which a threat actor gained unauthorized access to and encrypted certain Company systems. The incident disrupted access to internal data storage and business applications. Inotiv initiated an investigation, engaged external cybersecurity specialists, restricted system access, notified law enforcement, and activated business continuity measures. The scope, nature, and materiality of the incident remained undetermined as of the filing.
- GLOBALLeak Siteas victim2025-08-08
Inotiv, Inc. is a publicly USA traded contract research organization (CRO) that provides nonclinical and analytical drug discovery and development services to the pharmaceutical and medical device industries.As a leading contract research org ...
- FEDERALSEC 10-K Item 1Cas victim2024-12-04
Inotiv, Inc.'s FY2024 Form 10-K Item 1C cybersecurity disclosure describes the company's NIST/CIS-based cybersecurity risk management framework, MFA, XDR, third-party Managed XDR, and governance via the VP of Information Security, CTO, and Audit Committee. The filing affirmatively states no prior cybersecurity incidents have materially affected the company. No breach event is disclosed.