
Amgen Inc., one of the largest biotechnology companies in the country, has confirmed a cybersecurity incident that exposed patient health information and proprietary company data. The Thousand Oaks, California-based drugmaker disclosed the breach in a filing with the Securities and Exchange Commission. Hackers gained unauthorized access to cloud storage systems managed by outside vendors rather than Amgen’s own internal network. Contact our data breach lawyers to learn more.
According to the filing, Amgen identified the unauthorized activity in July 2026 and quickly activated its incident response plan. The company brought in outside forensic investigators to determine what happened and how far the intrusion reached. On July 29, 2026, Amgen determined the incident was significant enough to require formal disclosure to federal regulators.
The investigation so far indicates that attackers were able to remove data from the compromised cloud environments, including:
Amgen has stated it does not currently believe the incident will meaningfully affect its manufacturing operations, product supply, or financial reporting. The company has not yet disclosed how many people were affected, what specific categories of personal data were involved, or how the attackers first gained access to the cloud systems.
This breach adds Amgen to a growing list of pharmaceutical and biotechnology companies targeted by cybercriminals in 2026. Third-party cloud vendors have increasingly become a weak point that hackers exploit to reach sensitive healthcare data without needing to breach a company’s own servers directly.
When protected health information is exposed, the risks extend beyond a simple inconvenience. Stolen medical records can be used for identity theft, insurance fraud, or targeted phishing scams designed to trick victims into handing over even more personal information. Because health data often includes details that cannot be changed, like a password, the consequences of exposure can follow someone for years.
If your personal or medical information was exposed in this Amgen data breach, you may have legal options available to you. The Lyon Firm has represented individuals affected by major data breaches and understands how to evaluate whether a company’s security practices and notification timeline met legal standards. Our attorneys can review your situation, explain your rights in plain terms, and help you understand whether you may be entitled to compensation for the exposure of your data.
Consultations are confidential, and cases are typically handled without any upfront cost to you. Contact our Amgen data breach lawyers today to discuss your potential claim and take the first step toward protecting your information and your rights.
This article is based on publicly available information as of the date of publication, which may change as the investigation into this incident continues. No claims are made regarding the fault, liability, or wrongdoing of any company named herein.
Taking the first step doesn’t have to be complicated. In just a few minutes, you can share the basics of your case, and our team will guide you from there: