Infosys Ltd
ent_f82bf60ef25a95a6318a22f5
Disclosures
3
State AG · 2 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
1,310
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Infosys Ltd
- Normalized
- infosys— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- 0001067491
- Domain
- None on record
Disclosure history (3)newest first
- Indiana State AGas victim2026-03-12
Infosys Ltd reported a data breach to the Indiana Attorney General. The breach occurred on 2025-10-29 and was reported on 2026-03-12. 7 Indiana residents were affected. 1,310 individuals affected in total.
- Massachusetts State AGas victim2026-03-12
Infosys Limited notified Massachusetts residents of a breach involving its vendor, ESOP Direct, administrator of the employee share scheme. The incident occurred on October 29, 2025. Affected data may include names, addresses, phone numbers, bank account details, and government IDs. Infosys is offering two years of credit monitoring. No specific attack vector or number of affected individuals was disclosed in this notice.
- Massachusetts State AGas victim2023-12-07
Infosys Ltd reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-12-07. 1 Massachusetts residents were affected. The report records the breach type as electronic.
Subsidiary disclosures (newest 10)filed by group companies
◈ These filings were made by or about subsidiaries of Infosys Ltd — not by Infosys Ltd itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- Maine State AGvia INFOSYS MCCAMISH SYSTEMS, LLC2025-03-21
Infosys McCamish Systems, LLC (Atlanta, GA) experienced an external system breach (hacking) between October 29 and November 2, 2023, discovered on November 2, 2023. The breach affected approximately 6,078,263 individuals total, including 11,866 Maine residents. Consumer notification was sent on June 27, 2024. Kroll was engaged to provide 24 months of credit monitoring and identity theft protection services to affected individuals.
- California State AGvia INFOSYS MCCAMISH SYSTEMS, LLC2025-03-21
Infosys McCamish Systems LLC experienced a ransomware incident where systems were encrypted and data was subject to unauthorized access and acquisition between October 29, 2023, and November 2, 2023. The company became aware of the incident on November 2, 2023. The incident has been contained and remediated. 2,424 individuals were affected. The company engaged third-party cybersecurity experts and notified law enforcement. Complimentary identity monitoring services are being offered.
- MARYLANDHHS OCRvia INFOSYS PUBLIC SERVICES, INC.2025-01-31
Infosys Public Services, Inc. reported to HHS on 2025-01-31 a Unauthorized Access/Disclosure affecting 2985 individuals. Breached information located on Network Server. An employee of a subcontractor uploaded PHI (names, addresses, DOB, claims, diagnoses) to the Internet. Infosys terminated the subcontractor relationship and retrained employees.
- California State AGvia INFOSYS MCCAMISH SYSTEMS, LLC2024-12-10
Infosys McCamish Systems LLC experienced a ransomware incident between October 29 and November 2, 2023, discovered on November 2, 2023. The attack involved encryption of systems and unauthorized access/acquisition of personal information. The incident has been contained and remediated. Approximately 2,424 individuals were affected, with specific mention of Rhode Island residents. The company engaged third-party cybersecurity experts and notified law enforcement. Complimentary identity monitoring services were provided.
- Montana State AGvia INFOSYS MCCAMISH SYSTEMS, LLC2024-11-15
Infosys McCamish Systems, LLC (IMS) notified affected individuals of a ransomware incident occurring between Oct 29 and Nov 2, 2023. IMS systems were encrypted, and unauthorized access/acquisition of personal information (names, data elements) occurred. IMS engaged third-party experts, notified law enforcement, and contained the incident. 24 months of Kroll identity monitoring is offered. A specific count (2,424) is noted for Rhode Island residents.
- California State AGvia INFOSYS MCCAMISH SYSTEMS, LLC2024-10-21
Infosys McCamish Systems LLC experienced a ransomware incident where systems were encrypted and data was subject to unauthorized access and acquisition between October 29 and November 2, 2023. The company became aware of the incident on November 2, 2023. The incident has been contained and remediated. Approximately 2,424 individuals were affected, including residents of Rhode Island. The company engaged third-party cybersecurity experts and notified law enforcement. Complimentary identity monitoring services are being offered.
- Maine State AGvia INFOSYS MCCAMISH SYSTEMS, LLC2024-10-21
Infosys McCamish Systems, LLC reported a ransomware incident affecting 6,078,263 individuals nationwide, including 11,866 Maine residents. Unauthorized access occurred between Oct 29 and Nov 2, 2023. The incident was discovered on Nov 2, 2023. Notifications were sent starting June 27, 2024. Data types included names and government identifiers. The incident is contained.
- New Hampshire State AGvia INFOSYS MCCAMISH SYSTEMS, LLC2024-10-17
Infosys McCamish Systems LLC (IMS), a key administrative vendor for TIAA and TIAA Life, filed a supplemental notice with the New Hampshire Attorney General regarding a cybersecurity incident occurring in November 2023. IMS notified 101 New Hampshire residents of the breach, offering free identity monitoring. No fraudulent use of data was reported at the time of filing.
- California State AGvia INFOSYS MCCAMISH SYSTEMS, LLC2024-09-09
Infosys McCamish Systems LLC experienced a ransomware incident where systems were encrypted and data was subject to unauthorized access and acquisition between October 29, 2023, and November 2, 2023. The company became aware of the incident on November 2, 2023. The incident has been contained and remediated. Approximately 2,424 individuals were affected, including residents of Rhode Island. The company engaged third-party cybersecurity and eDiscovery experts, notified law enforcement, and is offering 24 months of identity monitoring services.
- New Hampshire State AGvia INFOSYS MCCAMISH SYSTEMS, LLC2024-09-09
Supplemental notice filed by Infosys McCamish Systems LLC to the New Hampshire Attorney General on September 9, 2024. The filing updates the initial notification from June 2024 by adding impacted customer names (New York Life Group Benefit Solutions, T. Rowe Price Retirement Plan Services, Inc.) to Exhibit B. No changes to affected individual counts are reported.