
Global technology services and consulting firm Cognizant has disclosed a cyber security incident that exposed sensitive personal information belonging to some of its clients.
In a data security incident notice filed with the Massachusetts Attorney General’s Office, Cognizant said that its U.S. division suffered a significant data security breach on April 21, in which threat actors infiltrated its internal network and stole confidential data. The company immediately launched an investigation, with assistance from external cybersecurity experts, to determine the nature and scope of the incident.
It also took steps to secure the affected systems and notified relevant law enforcement authorities about the incident.
“We are writing to notify you that a breach of security of your personal information occurred on or around April 21, 2026, at Cognizant Technology Solutions US Corporation.
“Under Massachusetts law, you have the right to obtain any police report filed in regard to this incident. If you are the victim of identity theft, you also have the right to file a police report and obtain a copy of it,” the IT giant said.
Although Cognizant did not disclose details about the incident, including the type of data that may have been compromised, the company said it had found no evidence that the exposed information had been misused. Nevertheless, it urged affected individuals to remain vigilant by regularly monitoring their credit reports, account and benefits statements, and reporting any suspicious activity to law enforcement agencies, including local police and the state attorney general.
‼️🇺🇸 Cognizant has been claimed a victim to Coinbasecartel Ransomware
— Dark Web Informer (@DarkWebInformer) April 15, 2026
Revenue: $21.1 Billion
Cognizant is an American multinational information technology consulting and services company that helps global businesses modernize technology, reimagine processes, and transform… pic.twitter.com/hTUoIe6TED
Cognizant’s disclosure comes days after a threat actor operating under the moniker “CoinbaseCartel” claimed on April 15 to have breached the IT giant’s internal network and listed the company as a victim on its data leak site.
CoinbaseCartel is a financially driven cybercrime group that surfaced in September 2025 and is known for carrying out data-extortion attacks. Instead of encrypting files, the group allegedly infiltrates organisations, exfiltrates sensitive information and threatens to release the stolen data if its ransom demands are not met. It has claimed breaches involving organisations across industries such as technology, healthcare, transportation and manufacturing.
Winston House, 3rd Floor,
Units 306-309, 2-4 Dollis park,
London, N3 1HF
020 8349 4363
© 2026, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543