2026 TriZetto Provider Solutions — 3.4M people (Cognizant; provider portal compromise)
Data compromised
Patient data, health insurance information, names, DOB, addresses, SSNs, provider-related records
Technical writeup
TriZetto Provider Solutions (Cognizant subsidiary) disclosed in March 2026 that a cyberattack exposed personal and health information for more than 3.4 million individuals. TriZetto operates healthcare data-processing and provider-facing systems; public reporting described unauthorized access via environments including a web portal used by healthcare providers. Stolen data included patient demographics, health insurance information, and personal identifiers (e.g., names, DOB, addresses, SSNs where applicable). Unauthorized access began around November 19, 2024 but was not detected until October 2, 2025—roughly 11 months of undetected activity—per regulatory timelines summarized in press coverage.
Root cause
Compromised healthcare-provider web portal / TriZetto processing platform; long-running undetected intrusion