Inotiv Data Breach: 176 GB of Sensitive Data Stolen

Published
August 28, 2025
Updated
August 28, 2025
Inotiv Data Breach: 176 GB of Sensitive Data Stolen
Inotiv
Types of INFORMATION affected
  • Names
    Names
  • Social security numbers
    Social Security Numbers
  • Dates of birth
    Dates of Birth
  • Addresses
    Addresses
  • Government IDs
    Government IDs
  • Medical Information
    Medical Info
  • Financial Info
    Financial Info

Affected by the

Inotiv

data breach?

Join the Lawsuit

It's free to join. 

Banner advertisement for ExpressVPN to take control of your online security

Claim Depot may receieve a commission from links on this page

On August. 8, 2025, Inotiv disclosed a major data breach in a filing with the Securities and Exchange Commission. The incident was later claimed by the Qilin ransomware group, who posted about the attack on the dark web on Aug. 19, 2025.

According to Qilin, they exfiltrated 176 GB of data from Inotiv’s systems, including 161,967 files. The stolen information reportedly contained personal and protected health data of employees and other individuals involved with Inotiv. The hackers also acquired complete reports on the development and testing of dozens of drugs, which may include sensitive intellectual property and proprietary research data.

The data breach appears to have been carried out through a ransomware attack, with Qilin gaining unauthorized access to Inotiv’s network. According to reports, the cybercriminals made the the stolen data available for purchase on the dark web.

Compromised data of employees and other individuals involved with Inotiv may include names, phone numbers, email addresses, dates of birth, Social Security numbers, driver's license or state ID card information, payment and financial account information, health insurance information and medical information.

Inotiv's response

After detecting the breach, Inotiv began notifying federal regulators and launched an investigation. The company will work to identity impacted individuals and contact them by mail with more specifics about the cybersecurity incident.

If you believe your personal information may have been compromised in this breach:

  • Carefully review any notice or communication you receive from Inotiv.
  • Monitor financial accounts and credit reports for signs of identity theft.
  • Consider placing fraud alerts or credit freezes with the major credit bureaus.
  • Be cautious of unsolicited emails or phone calls requesting personal information.

For more information about the company, visit Inotiv’s official website.

Protect Your Data

A breach notice means your personal details could be circulating far beyond the organization involved. One practical step is continuous monitoring: services such as Identity Defender (included with an ExpressVPN subscription) can automatically check dark-web markets, flag new credit-file activity, and request removal of your information from data-broker sites.

This kind of “early-warning system” can’t undo a breach, but it can help you spot misuse quickly and limit further exposure. ExpressVPN is offering 61% off, risk-free for 30 days, with ID Theft Insurance included and no extra cost for those who sign up for one or two years.

Notice Letter

This browser does not support inline PDFs. Please download the PDF to view it: Download PDF

CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image