Cyber Incident Victim: Analog Devices Inc.
Timeline
Summary
Analog Devices reported that an unauthorized party accessed some of its systems and exfiltrated certain files, prompting the activation of incident response protocols and the engagement of external cybersecurity experts for containment and investigation. The company stated that its business operations were not affected and that it does not believe the incident will have a material impact on its financial condition, while noting that law enforcement has been informed and affected parties will be notified. It also mentioned that it is separately assessing an unrelated cybersecurity matter that surfaced in public reports, noting a claim by the extortion group ExfilSquad that it had stolen data from the company, although the connection between that claim and the disclosed breach remains unclear.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 0 motives | 0 techniques |
| Threat Actors | Type | Location |
|---|---|---|
| 0 actors | Available to members | Available to members |
Description
On June 23, 2026, Analog Devices detected unauthorized access to certain of its systems and promptly activated its incident response protocols. The company engaged external cybersecurity experts to assist with containment and investigation activities. In a filing with the U.S. Securities and Exchange Commission, Analog Devices stated that the breach involved the exfiltration of certain files but did not disclose the type of data compromised. The firm emphasized that its business operations were not affected by the incident and that it does not anticipate any material impact on its operations or financial condition. Analog Devices employs roughly 24,500 people worldwide and reported more than $11 billion in revenue in 2025, designing analog, mixed‑signal, power management and digital signal processing chips for industrial, automotive, communications, healthcare, aerospace and data‑center markets.

Following detection, Analog Devices notified law enforcement authorities and indicated that affected parties and regulators would receive notifications about the compromised information. The company said it has no knowledge of any stolen data being leaked online or used for fraudulent purposes, but it will continue to monitor the situation and take any necessary action. In addition to the breach response, Analog Devices disclosed that it is separately assessing an unrelated cybersecurity matter that surfaced in public reports on July 26, 2026. The separate matter relates to public reports about the data‑extortion group ExfilSquad claiming to have stolen 570,000 records from Analog Devices. ExfilSquad had added Analog Devices to its leak site asserting that it had exfiltrated information from company systems. At the time of writing, Analog Devices no longer appears on ExfilSquad’s site, and it remains unclear whether the ExfilSquad intrusion is connected to the June breach.
SecurityWeek noted that the SEC filing described the July 26 matter as a disparate cybersecurity issue whose validity, scope and potential impact are under assessment. ExfilSquad specializes in data theft and does not appear to use file‑encrypting ransomware in its attacks. The group’s leak website lists Microsoft, the cities of Atlanta and Houston, and the UK Department of Education as other victims, although SOCRadar has observed that some of the group’s claims appear exaggerated or fabricated. Analog Devices has not attributed the June incident to any ransomware or data‑extortion group, and no other threat actor has publicly claimed responsibility for the breach.
