Cyber Security News

Cognizant TriZetto Data Breach Exposes Health Information of 3.4 Million Patients

TriZetto Provider Solutions, a healthcare technology subsidiary of the IT services giant Cognizant, has officially disclosed a massive cybersecurity data breach affecting the sensitive health information of 3,433,965 patients.

The healthcare organization recently filed a formal data breach notification revealing that malicious threat actors successfully compromised their external systems.

This extensive breach heavily underscores the ongoing security threats directly targeting the healthcare supply chain and vital third-party service providers.

Breach Timeline and Attack Impact

The unauthorized external network access initially occurred on November 19, 2024. However, the organization did not officially discover the intrusion until November 28, 2025.

This severe security dwell time allowed the malicious attackers to remain completely undetected inside TriZetto’s external infrastructure for slightly over an entire year.

The breach is currently classified as an external system hacking incident. During the intrusion, cybercriminals successfully extracted full names and other critical personal identifiers directly combined with sensitive healthcare data.

This extensively delayed discovery raises immediate critical questions about network monitoring capabilities and threat hunting practices within the broader healthcare technology sector.

Maine’s Attorney General received the official breach notice on February 6, 2026, submitted by legal counsel Edward Zacharias from McDermott Will & Schulte.

While millions are impacted nationwide, the filing specifies that 1,128 victims are residents of Maine. The massive scale of this data exfiltration event easily places it among the largest and most severe healthcare supply chain breaches reported recently.

Remediation and Victim Protection

Following the eventual discovery of the compromised infrastructure, TriZetto initiated an incident response investigation and began officially notifying affected consumers on February 6, 2026.

Because the stolen databases include highly sensitive personal identifiers linked with medical records, impacted victims now face a significantly elevated risk of targeted spear-phishing campaigns, medical identity theft, and severe financial fraud.

The technology provider is currently delivering written notification letters to all affected patients to maintain strict compliance with regulatory breach disclosure laws.

To help mitigate the potential ongoing fallout from this massive data exposure, TriZetto partnered directly with the security firm Kroll.

The company is currently offering affected patients 12 months of complimentary single-bureau credit monitoring and dedicated identity theft protection services.

Independent cybersecurity researchers strongly advise all affected patients to proactively freeze their credit reports and continuously monitor their personal medical billing statements for any unauthorized or fraudulent healthcare claims.

Follow us on Google News, LinkedIn, and X for daily cybersecurity updates. Contact us to feature your stories.

Dhivya

Divya is a Senior Journalist at Cyber Security news covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Recent Posts

Top 10 Best SaaS Security Posture Management (SSPM) Tools in 2026

Your SaaS estate M365, Salesforce, Workday, Slack, hundreds of others is a sprawl of misconfigurations,…

5 minutes ago

Top 10 Best Data Security Posture Management (DSPM) Tools in 2026

DSPM finds sensitive data you didn’t know you had, classifies it, maps who can reach…

11 minutes ago

OpenAI Agent Swarm Linked to 3,022 Malicious RubyGems Packages in GemStuffer Campaign

Open-source packages are meant to save developers time. In the GemStuffer campaign, that trust became…

22 minutes ago

Google Chrome 153 Update Fixes 42 Security Flaws, Including 3 Critical Ones

Google has released an important Chrome 153 security update that fixes 42 vulnerabilities across the…

5 hours ago

CISA and NIST Release Technical Checklist for Safeguarding Identity Tokens From Theft and Misuse

The Cybersecurity and Infrastructure Security Agency (CISA) and the National Institute of Standards and Technology…

15 hours ago

CISA Shares 17 Techniques Used by Hackers to Compromise Active Directory Environments

CISA and five international cybersecurity agencies have released detailed guidance describing 17 common techniques hackers…

16 hours ago