In late 2025, Managed Care Advisors/Sedgwick Government Solutions, a federal government contractor for the World Trade Center Health Program, experienced a data breach. An unauthorized third party exploited a vulnerability in a corporate SFTP server on November 16, 2025. The company discovered the breach on December 4, 2025, and notifications to affected individuals began on February 11, 2026. The ransomware group TridentLocker publicly claimed responsibility in late December 2025 and early January 2026.
The breach exposed approximately 3.4 gigabytes of data and potentially affected around 24,594 individuals across at least two states, Indiana and Rhode Island. Compromised data types included names, addresses, Social Security numbers, dates of birth, medical record images, World Trade Center Health Program forms, WTC Health Program Member numbers, certified health conditions information, and Single Case and Letter of Agreement records. The company's core operational systems and claims management servers were not affected, and Managed Care Advisors/Sedgwick Government Solutions worked with Mandiant and notified the FBI.
Details surrounding data breaches can emerge over time, and notifications to affected individuals may be delayed.