---
schema_version: "secwatch.filing_event.v1"
accession: "0001032220-23-000061"
form_type: "8-K"
ticker: "MMS"
cik: "0001032220"
company_name: "MAXIMUS, INC."
filed_at: "2023-07-26T23:59:59+00:00"
generated_at: "2026-06-13T02:10:26.667590+00:00"
event_type: "cyber"
sentiment: "negative"
materiality_score: 0.85
calibrated_materiality_score: 0.85
confidence: "high"
source: SEC EDGAR
---

# Maximus reports MOVEit breach affecting 8-11M individuals; records $15M expense

## Summary
- Unauthorized third party exploited MOVEit zero-day; accessed personal info of 8 to 11 million individuals.
- Data includes SSNs, protected health info, and other personal data; free credit monitoring offered.
- Company estimates $15M expense for Q3 FY2023 for investigation and remediation activities.
- No material business interruption; internal IT systems beyond MOVEit unaffected.
- Cooperation with law enforcement; notification to customers, regulators, and affected individuals ongoing.

## SEC filing metadata
- accession: 0001032220-23-000061
- form_type: 8-K
- ticker: MMS
- cik: 0001032220
- company_name: MAXIMUS, INC.
- filed_at: 2023-07-26T23:59:59+00:00
- event_type: cyber
- sentiment: negative
- materiality_score: 0.85
- calibrated_materiality_score: 0.85
- confidence: high
- sec_items: 8.01
- EDGAR index: https://www.sec.gov/Archives/edgar/data/1032220/000103222023000061/0001032220-23-000061-index.htm
- EDGAR primary document: https://www.sec.gov/Archives/edgar/data/1032220/000103222023000061/mms-20230726.htm

## Machine-readable alternates
- HTML: https://secwatch.observer/filing/0001032220-23-000061
- JSON: https://secwatch.observer/filing/0001032220-23-000061.json
- Plain text: https://secwatch.observer/filing/0001032220-23-000061.txt

This AI-assisted summary is a reading aid. Review the linked SEC EDGAR filing before relying on any specific claim.
