Hacking IncidentsHigh

Sedgwick Government Solutions Hit by TridentLocker Ransomware Attack

Tuesday, March 31, 2026
United States
SecurityWeek

Summary

Sedgwick confirmed a ransomware attack on its subsidiary Sedgwick Government Solutions, which provides services to US government agencies. The TridentLocker ransomware group claimed responsibility and alleged theft of approximately 3.4 gigabytes of data. Sedgwick stated the attack only affected an isolated file transfer system and not its wider network.

Threat Analysis

Sedgwick, a leading claims management and risk solutions company, confirmed a cyberattack on its subsidiary Sedgwick Government Solutions, which provides services to US federal and state government agencies. The TridentLocker ransomware group claimed responsibility for the attack.

Attack Details: TridentLocker alleged the theft of approximately 3.4 gigabytes of data from Sedgwick Government Solutions. The group is known for targeting organizations with government contracts to maximize leverage and potential ransom payments.

Scope: Sedgwick stated the attack was contained to an isolated file transfer system and did not affect its wider corporate network or primary claims management systems. However, given the subsidiary's role serving government agencies, the potential sensitivity of the exfiltrated data is significant.

Government Impact: Sedgwick Government Solutions provides claims administration, risk management, and related services to US government entities. Any data breach involving government-related information could have national security or privacy implications.

Recommended Actions: Organizations using Sedgwick Government Solutions services should assess whether their data may have been included in the exfiltrated files. Review data sharing agreements and incident response procedures. Monitor for any suspicious activity related to data that may have been shared with Sedgwick Government Solutions.

Last updated: Mar 31, 2026, 08:18 AM

Daily Intelligence

Stay Ahead of Threats

Subscribe to receive daily threat briefings delivered to your inbox. Be the first to know about emerging security risks.

No spamUnsubscribe anytimeDaily at 9 AM