AMGN · News · 20260804N
Cloud Data Breach
AMGEN INC · 2026-08-04 · Importance 37 · Surprise 42 · In source text
In July 2026, Amgen reported unauthorized access to third-party-hosted cloud storage systems. The incident involved exfiltration of proprietary data and patient protected health information, and Amgen notified the SEC while engaging forensic specialists to assess the scope. The company had not reported an impact on its financial position or operations, but the incident creates potential cybersecurity compliance, remediation, and privacy-liability costs.
Key facts
- Amgen disclosed a cybersecurity incident in July 2026 involving unauthorized access to its third-party-hosted cloud storage systems and exfiltration of proprietary data and patient PHI. source
- Amgen said it engaged forensics experts and notified the SEC about the July 2026 cloud breach, while the specific attack vector and threat actor remain unidentified. source
- There is no evidence reported so far that the July 2026 cloud breach impacted Amgen's financial position or operations. source
Impact estimates
| metric | direction | stage | expected | basis |
|---|---|---|---|---|
| liability | negative | contingent | — | Amgen disclosed a cybersecurity incident in July 2026 involving unauthorized access to its third-party-hosted cloud storage systems and… |
| operating_income | negative | contingent | — | Amgen disclosed a cybersecurity incident in July 2026 involving unauthorized access to its third-party-hosted cloud storage systems and… |
| operating_income | negative | committed | — | Amgen said it engaged forensics experts and notified the SEC about the July 2026 cloud breach, while the specific attack vector and threat… |