Analog Devices data breach after attackers stole files
Chipmaker Analog Devices found intruders inside its internal computer systems in June 2026 and confirmed some company files were stolen. The company has not said what those files contain, and it says normal business operations kept running the whole time.
- Report priority
- High
- Involves
- Cisco
What to do
If you are an ADI customer, supplier, or employee, watch for an official notification letter or email from Analog Devices, since the company says it will notify affected parties and regulators once its investigation is further along.
Reported details
Analog Devices disclosed in a Form 8-K filed with the SEC that it detected unauthorized access to certain company systems on June 23, 2026. It activated incident response, brought in outside cybersecurity firms, and notified law enforcement. Investigators confirmed files were exfiltrated but the scope and content of that data are still being determined, and ADI says the data has not been publicly released or used fraudulently so far.
An extortion group calling itself ExfilSquad separately listed Analog Devices on its leak site around July 26, 2026, claiming roughly 570,000 stolen customer records with personal and address data. ADI has not attributed the June intrusion to this group, the claim is unverified, and the listing has since been removed from the group's site.
References
- docs.gitlab.com · patch-release-gitlab-19-2-1-released (patches) patch release notes
- docs.gitlab.com · releases patch release notes
- github.com · v15.5.21 (tag) patch release notes
- github.com · v16.2.11 (tag) patch release notes
- github.com · GHSA-7qpv-r5mr-78m4 vendor advisory
- github.com · GHSA-x692-q9x7-8c3f vendor advisory
- github.com · advisories vendor advisory
- sec.gov · d158253d8k.htm SecurityAffairs
- infosec.exchange · @securityaffairs SecurityAffairs
- securityaffairs.co · wordpress SecurityAffairs
- bleepingcomputer.com · shinyhunters-claims-brinks-home-breach-threatens-to-leak-stolen-data BleepingComputer
- bleepingcomputer.com · analog-devices-discloses-data-breach-says-operations-unaffected BleepingComputer
- sec.cloudapps.cisco.com · cisco-sa-notice-L4XfJg8S Cisco PSIRT
- blogs.cisco.com · strengthening-the-foundation-a-predictable-customer-focused-response-to-ai-accelerated-vulnerability-discovery Cisco PSIRT
- acn.gov.it · operational-summary-1-semestre-2026 ACN CSIRT Italy
- cisecurity.org · multiple-vulnerabilities-in-adobe-products-could-allow-for-arbitrary-code-execution_2026-073 MS-ISAC
- cyber.gc.ca · gladinet-security-advisory-av26-765 CCCS Canada
- centrestack.com CCCS Canada
- cyber.gc.ca · php-group-security-advisory-av26-764 CCCS Canada
- cyber.gc.ca · control-systems-phoenix-contact-security-advisory-av26-762 CCCS Canada
- certvde.com · VDE-2026-008 CCCS Canada
- cyber.gc.ca · gitlab-security-advisory-av26-758 CCCS Canada
- cyber.gc.ca · vercel-security-advisory-av26-754 CCCS Canada
- cyber.gc.ca · jetbrains-security-advisory-av26-752 CCCS Canada
- jetbrains.com · issues-fixed CCCS Canada
- blog.jetbrains.com · security CCCS Canada
- cyber.gc.ca · erlang-security-advisory-av26-750 CCCS Canada
- cyber.gc.ca · microsoft-security-advisory-av26-747 CCCS Canada
- msrc.microsoft.com · CVE-2026-57978 CCCS Canada
- msrc.microsoft.com · CVE-2026-57989 CCCS Canada
- msrc.microsoft.com · CVE-2026-57990 CCCS Canada
- msrc.microsoft.com · vulnerability CCCS Canada
- bitdefender.com · ransomware-negotiator-working-other-side Graham Cluley
- infosecurity-magazine.com · phishing-dominates-initial-entry Infosecurity Magazine
- infosecurity-magazine.com · coca-cola-subsidiary-fairlife-data Infosecurity Magazine
- infosecurity-magazine.com · open-ai-hacked-another-company Infosecurity Magazine
- infosecurity-magazine.com · lidl-notifies-customers-of Infosecurity Magazine
- neuracybintel.com · coca-cola-confirms-data-breach-following-fairlife-ransomware-attack-as-anubis-threatens-data-leak NeuraCybIntel
- investors.coca-colacompany.com · the-coca-cola-company-announces-technology-disruption-involving-fairlife-operations NeuraCybIntel
- bleepingcomputer.com · south-korea-fines-telco-giant-kt-39-million-for-customer-data-breach BleepingComputer