HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
SITUSAMC HOLDINGS CORPORATION
bd_6142d5e9cfadd792 · schema v1 · pii pii-v1
Full breach record for SITUSAMC HOLDINGS CORPORATION →SitusAMC Holdings Corporation notified consumers of a data breach occurring between November 12-19, 2025. Unauthorized access to IT systems resulted in the potential exposure of names, addresses, dates of birth, and Social Security numbers. The company engaged third-party experts, notified law enforcement, and enhanced security measures. Affected individuals were offered 24 months of identity theft protection services through IDX.
Vermont clock✗ VT AG >45 bday11 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 13 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- bd_6a4691fada8d391eCalifornia State AGfiled 2026-02-20(23d gap)Verified
- bd_7916a021a8a6b3d5Washington State AGfiled 2026-02-20(23d gap)Verified
- bd_70a785f4cf612d8cIndiana State AGfiled 2026-03-10(41d gap)Verified
- bd_8485960cdfce7d6cIndiana State AGfiled 2026-03-10(41d gap)Verified
Show 6 more filings ↓Show fewer ↑up to 68d gap
- bd_c52f9d050e7058e1California State AGfiled 2026-03-10(41d gap)Verified
- bd_0cbe44e43d4d6e6fOregon State AGfiled 2026-03-23(54d gap)Verified by operator
- bd_9fd5d288eb9921f4California State AGfiled 2026-04-03(65d gap)Verified
- bd_e18d1724ef30fa6fMaine State AGfiled 2026-04-03(65d gap)Verified
- bd_4b06c2519a61551fTexas State AGfiled 2026-04-06(68d gap)Verified
- bd_75b585487f6fa356New Hampshire State AGfiled 2026-04-06(68d gap)Verified
Showing first 10 of 12 linked disclosures.
Source provenance
- Source URL
- https://ago.vermont.gov/document/2026-01-28-situsamc-holdings-corporation-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 28, 2026
- Raw hash
- de123bb9012adfeca7aa1c282b50092dea543017d18e45704ce39e322ad4ee7d
Reporting entity
- Name
- SITUSAMC HOLDINGS CORPORATIONnorm: situsamc holdings
- Domain
- situsamc.com
Victim entity
- Name
- SITUSAMC HOLDINGS CORPORATIONnorm: situsamc holdings
- Domain
- situsamc.com
Incident
- Discovered
- Nov 12, 2025
- Materiality determined
- —
- Notification sent
- Jan 28, 2026
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- notified certain law enforcement and governmental authorities
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 11 weeks(77 days from discovery to filing)
- Compliance flags
- VT AG >45 bday
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.