Amgen Cloud Data Breach Exposes Sensitive Patient Health Information
Pharmaceutical company Amgen has disclosed that its cloud data was breached in July 2026, exposing patient health information and proprietary data. The breach occurred when unauthorized actors compromised third-party cloud service providers.
The incident was discovered earlier in the month, and Amgen initiated containment protocols with independent forensic cybersecurity experts to assess the scope of the exposure. An initial investigation confirmed that attackers removed confidential files stored across the compromised cloud environments.
Amgen has since learned that some data, including proprietary information, patient protected health information, and other sensitive data, was exfiltrated from these cloud environments. The company determined on July 29 that the breach qualified as material due to the sensitivity and volume of the compromised files, but does not anticipate a material impact on financial results.
Amgen is currently evaluating legal notification mandates and plans to inform affected patients as required by regulatory guidelines. Investigators continue working to assess whether intellectual property, research data, or additional patient records were accessed during the intrusion.