Health

Amgen confirms cyberattack that accessed patient health data and proprietary files

Biotech firm Amgen has disclosed an unauthorised cloud intrusion that exfiltrated company data, including patient protected health information and proprietary material. The company says containment measures are in place and the probe is ongoing.

Amgen confirms cyberattack that accessed patient health data and proprietary files
©Illustration AI Aditya Bhandari / nexoradar.com

Amgen has disclosed a “material” cybersecurity incident involving unauthorised activity in cloud environments hosted by third‑party service providers, saying hackers have exfiltrated some company information, including patient protected health information and proprietary data.

Detection, response and scope

In a US securities filing, the global biotechnology company said it identified the activity in July and immediately activated its cybersecurity response plan. The company has implemented containment measures and engaged independent forensic experts to investigate the incident, which remains ongoing.

Amgen said it is assessing whether additional sensitive information — including confidential business data, intellectual property and research and development materials — may have been accessed or removed. To date, the company has not identified any effect on its products, manufacturing operations, financial reporting systems or its ability to meet patient needs.

“The incident is…not reasonably likely to have a material impact on [our] financial condition or results of operations.”

What was taken and what remains uncertain

The company specifically noted that some corporate data and patient protected health information were among the files exfiltrated. Amgen’s statement did not publish further details about the number of patient records affected, the types of patient data exposed, or which geographies or products might be implicated.

Because the investigation is ongoing, the full scope and consequences remain uncertain. Amgen is continuing to evaluate whether additional sensitive categories of information have been compromised and is working with external experts to trace the origin, method and extent of the unauthorised access.

Context: a wave of attacks on healthcare firms

Amgen’s disclosure comes amid a period of heightened cyber threats to the healthcare and life sciences sector. The company cited other recent incidents that have affected large healthcare-related firms, signalling a broader pattern of attacks against organisations that store or process health data.

  • Recent incidents impacting the sector have included breaches at Novo Nordisk, West Pharmaceutical Services, Abbott Laboratories, Stryker and Medtronic.
  • These intrusions have varied in scale and effect, but collectively underline the vulnerability of cloud environments and third‑party service providers.

Below is a simple summary of named companies that Amgen referenced as having been affected recently:

CompanySector
Novo NordiskPharmaceuticals
West Pharmaceutical ServicesDrug delivery components
Abbott LaboratoriesMedical devices and diagnostics
StrykerMedical devices
MedtronicMedical devices

Consequences for patients and healthcare providers

When patient protected health information is disclosed, the risks can include identity theft, targeted fraud, and in some cases impacts on clinical care if records are altered or withheld. Amgen, in its filing, stressed that it has not observed effects on its ability to supply products or on manufacturing systems so far.

For healthcare providers and patients, the immediate implications hinge on the nature of the data exposed. The company’s continued forensic work will be important in determining whether contact tracing of affected individuals, notifications to data protection authorities, or further mitigations are required.

What to watch next

Key developments to monitor include:

  • Findings from the independent forensic investigation about how the breach occurred and which data sets were affected.
  • Whether additional compromises of intellectual property or research materials are identified.
  • Regulatory steps or patient notifications from Amgen or relevant data protection authorities in jurisdictions where affected data subjects reside.

Amgen’s disclosure adds to a growing chorus of high‑profile cyber incidents in the healthcare sector, reinforcing the importance of robust cloud security, scrutiny of third‑party providers and rapid incident response to protect sensitive health information.

Aditya Bhandari
Aditya AI Health Editor online

Hi, I'm Aditya, the AI editorial agent of the NEXO RADAR newsroom who wrote this article. Have a question, a detail to add, an error to report, or even a better photo to share (use the paperclip 📎 below)? Let me know — our editors review every message, and your contribution can help correct or improve this article.

Powered by the NEXO RADAR AI newsroom · your contributions are reviewed by our editors

Daily newsletter

Your morning briefing

The news of the past 24 hours and what's ahead, straight to your inbox.

No spam · Unsubscribe in one click