Inotiv, Inc.
ent_cd8a39266cf82207
Disclosures
16
State AG · SEC 8-K · Leak Site · 10 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
10,482
nationwide · State AG TX
Leak-site claims
2
unverified actor claims
Identity resolution
- Canonical name
- Inotiv, Inc.
- Normalized
- inotiv— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- 0000720154
- Domain
- inotiv.com
Disclosure history (16)newest first
- Texas State AGas victim2025-12-29
Inotiv, Inc. based in West Lafayette, Indiana, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-12-17 and reported on 2025-12-29. 940 Texas residents were affected. 10,482 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Driver’s License number;Government-issued ID number (e.g. passport, state ID card);Financial Information (e.g. account number, credit or debit card number);Medical Information;Health Insurance Information;Other;Date of Birth. Consumers were notified via U.S. Mail.
- Nebraska State AGas victim2025-12-23
Inotiv Inc notified Nebraska residents of a cybersecurity incident involving unusual activity and unauthorized access to systems. The company engaged external cybersecurity specialists, contained the incident, and notified law enforcement. Affected individuals were offered 24 months of complimentary credit monitoring and identity theft protection through Experian IdentityWorks. The notification deadline was March 31, 2026.
- Maine State AGas victim2025-12-23
Inotiv, Inc. reported an external system breach (hacking) occurring on August 5, 2025, discovered on December 17, 2025. The incident affected 10,482 individuals, including 7 Maine residents. Data types compromised included names, personal identifiers, SSNs, and driver's license numbers. Inotiv engaged external cybersecurity specialists, notified law enforcement, and provided 24 months of credit monitoring via Experian.
- New Hampshire State AGas victim2025-12-23
Inotiv, Inc. submitted a supplemental notice to the New Hampshire Attorney General regarding a cybersecurity incident occurring between August 5-8, 2025. The company discovered on November 21, 2025 that a threat actor may have acquired personal information, including names, SSNs, tax IDs, DOBs, and health insurance info. A total of 14 New Hampshire residents were potentially affected. Inotiv notified 11 residents on December 2, 2025, and subsequently identified 3 additional affected residents and 1 resident with additional data types, notifying them on December 23, 2025. The company offered 24 months of credit monitoring via Experian.
- California State AGas victim2025-12-23
Inotiv, Inc. filed a breach notification with the California AG covering an incident that occurred August 5–8, 2025. The notification letter is an update to an earlier December notification. Affected individuals were offered 24 months of complimentary Experian IdentityWorks credit monitoring and identity restoration services. The cause and specific data types affected are not fully detailed in the available attachment.
- Vermont State AGas victim2025-12-22
Inotiv notified consumers of a data breach involving unusual activity. The company engaged external cybersecurity specialists, notified law enforcement, and is offering 24 months of credit monitoring and identity theft protection via Experian. Data types affected include identity information.
- Massachusetts State AGas victim2025-12-03
Inotiv, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2025-12-03. 40 Massachusetts residents were affected.
- Nebraska State AGas victim2025-12-02
Inotiv Inc reported unauthorized access to its systems in Nebraska. The company detected unusual activity, contained it, and engaged external cybersecurity specialists and law enforcement. The breach compromised personal information, including Social Security Numbers, affecting individuals in Nebraska. Inotiv is offering 24 months of complimentary credit monitoring and identity theft protection via Experian IdentityWorks.
- New Hampshire State AGas victim2025-12-02
Inotiv, Inc. filed a breach notification with the New Hampshire Attorney General on December 2, 2025, regarding unauthorized access to its systems. The company engaged external cybersecurity specialists and law enforcement to investigate and contain the incident. Inotiv is offering 24 months of complimentary credit monitoring and identity theft protection services through Experian IdentityWorks to affected individuals.
- California State AGas victim2025-12-02
Inotiv, Inc. reported a data breach occurring between August 5 and August 8, 2025. The incident involved unauthorized access to personal information, including Social Security Numbers and basic identity data, for both adults and minors. Inotiv contained the incident, engaged external cybersecurity specialists, and notified law enforcement. The company is offering 24 months of credit monitoring and identity theft protection via Experian IdentityWorks to affected individuals.
- Maine State AGas victim2025-12-02
Inotiv, Inc. reported an external system breach (hacking) occurring between August 5 and August 8, 2025. The incident was discovered on November 21, 2025. Approximately 9,542 individuals were affected, including 5 Maine residents. The organization engaged external cybersecurity specialists, notified law enforcement, and sent written notifications on December 2, 2025. Credit monitoring services were offered to affected individuals.
- Indiana State AGas victim2025-12-02
Inotiv Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2025-08-05 and was reported on 2025-12-02. 3,158 Indiana residents were affected. 10,482 individuals affected in total.
- FEDERALSEC 8-Kas victim2025-09-25
Inotiv, Inc. filed an 8-K on September 25, 2025, disclosing a cybersecurity incident (the 2025 Cybersecurity Incident) referenced in a prior August 18 filing. Three putative class actions (Doyal, Merrell, Wagner) were filed alleging that class members were harmed when their personally identifying information and protected health information was impacted by the incident. The Company states the investigation is ongoing, the full scope is unknown, and it has not yet determined if the incident is material. Operations are partially disrupted but product delivery continues.
- GLOBALLeak Siteas victim2025-08-11
Inotiv, Inc. is a publicly USA traded contract research organization (CRO) that provides nonclinical and analytical drug discovery and development services to the pharmaceutical and medical device industries.As a leading contract research org ...
- FEDERALSEC 8-Kas victim2025-08-08
On August 8, 2025, Inotiv, Inc. became aware of a cybersecurity incident in which a threat actor gained unauthorized access to and encrypted certain Company systems. The incident disrupted access to internal data storage and business applications. Inotiv initiated an investigation, engaged external cybersecurity specialists, restricted system access, notified law enforcement, and activated business continuity measures. The scope, nature, and materiality of the incident remained undetermined as of the filing.
- GLOBALLeak Siteas victim2025-08-08
Inotiv, Inc. is a publicly USA traded contract research organization (CRO) that provides nonclinical and analytical drug discovery and development services to the pharmaceutical and medical device industries.As a leading contract research org ...