Pharmaceutical company Amgen recently announced that it suffered a data breach, resulting in the exposure of patient health information and proprietary data. The breach occurred in the company's cloud systems, which are operated by third-party service providers.
Background on Amgen
Amgen is a California-based biotechnology company that develops and manufactures medicines for serious illnesses, including cancer, cardiovascular disease, inflammation, and rare diseases. The company's products and services are used to improve the health and well-being of patients worldwide.
The Data Breach
In July 2026, Amgen detected unauthorized activity in its cloud systems, prompting the company to activate its cybersecurity response plan. The plan included implementing containment measures and hiring independent forensic experts to investigate the incident. The investigation found that threat actors had stolen sensitive data from the cloud environments, including proprietary data, patient protected health information, and other information.
According to a Form 8-K filing with the SEC, Amgen is still determining whether additional information was accessed or stolen, including confidential business information, intellectual property, research and development data, and other patient information. The company has not disclosed which third-party cloud providers were involved or how the environments were compromised.
Investigation and Response
Amgen is continuing to investigate the breach with the assistance of third-party cybersecurity experts. The company is evaluating legal and regulatory notification requirements and will notify impacted patients where required. On July 29, the company determined that the incident was material after evaluating the volume of potentially impacted files and the possibility that they contained sensitive information.
However, Amgen currently does not believe the incident is reasonably likely to materially affect its financial condition or operating results. The company's response to the breach is ongoing, and it is working to determine the full extent of the incident and to prevent similar breaches in the future.
Related Incidents
The breach at Amgen is not an isolated incident. Other companies in the healthcare industry have also been targeted by threat actors, resulting in the exposure of sensitive information. For example, West Pharmaceutical and Medtronic have both been affected by data breaches, and Health-ISAC has warned of rising ShinyHunters data theft attacks on healthcare organizations.
These incidents highlight the importance of robust cybersecurity measures in the healthcare industry. Companies must take steps to protect sensitive information and to prevent breaches, including implementing strong security protocols, conducting regular security audits, and providing training to employees on cybersecurity best practices.
Conclusion
The data breach at Amgen is a significant incident that highlights the risks associated with storing sensitive information in cloud systems. The company's response to the breach is ongoing, and it is working to determine the full extent of the incident and to prevent similar breaches in the future. The incident serves as a reminder of the importance of robust cybersecurity measures in the healthcare industry and the need for companies to take steps to protect sensitive information.
According to a recent whitepaper by Picus, security teams log 54% of successful attacks and alert on just 14%. The rest move through the environment unseen. The whitepaper shows how breach and attack simulation tests SIEM and EDR rules so threats stop slipping by detection.
Source: BleepingComputer