Social EngineeringFinancial ServicesFinancePhishingStolen CredentialsCustomer Data InvolvedData ExfiltratedTargetedPIIIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIALFINANCIAL_ACCOUNTMediumContained
AMERIPRISE FINANCIAL, INC.
bd_795bde141ec61020 · schema v1 · pii pii-v1
Full breach record for AMERIPRISE FINANCIAL, INC. →On January 5, 2026, an Ameriprise Financial Services advisor fell victim to a phishing email. An unauthorized third party potentially accessed client PII (names, addresses, SSNs, driver's license numbers, financial account details, birthdates) for a temporary period. No confirmed access was evidenced. 305 total individuals affected; 2 Maine residents. 12-month credit monitoring offered via Equifax.
Maine clockDiscovered Jan 5, 2026 → Filed with AG Feb 6, 202632d ⏱ ME AG >30d5 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 10 about the same incident.View merged incident
Linked disclosures
Why this link?Ransomware claims (1)
- bd_e60f06771abd1293Leak Siteshinyhuntersfiled 2026-03-22(45d gap)Verified
Regulatory filings (8) · sorted by filing gap
- bd_5f2a053599f5f3c9Maine State AGfiled 2026-04-17(70d gap)Verified
- bd_87d680adebf94539Iowa State AGfiled 2026-04-17(70d gap)Verified
- bd_8dfab8a7a73e8fe0Indiana State AGfiled 2026-04-17(70d gap)Verified
- bd_eb12126d0012e885California State AGfiled 2026-04-17(70d gap)Verified
Show 4 more filings ↓Show fewer ↑up to 75d gap
- bd_f8b3dd7680ac0ff5Oregon State AGfiled 2026-04-17(70d gap)Verified
- bd_fa7df8283d489ea1Washington State AGfiled 2026-04-17(70d gap)Verified
- bd_7bd8e49d9e00029bSouth Carolina State AGfiled 2026-04-20(73d gap)Verified
- bd_0f2775856e7200e1Texas State AGfiled 2026-04-22(75d gap)Verified
Source provenance
- Source URL
- https://www.maine.gov/agviewer/content/ag/985235c7-cb95-4be2-8792-a1252b4f8318/97c66997-dd0f-406b-a03d-1576b556336c.html
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 6, 2026
- Raw hash
- 8270153e24f460ad6d2dff7279c8dece6fddc67c35f19d10f511b6a99aef778c
Reporting entity
- Name
- AMERIPRISE FINANCIAL, INC.norm: ameriprise financial
- Domain
- ameriprise.com
- Industry
- Financial Services
Victim entity
- Name
- AMERIPRISE FINANCIAL, INC.norm: ameriprise financial
- Domain
- ameriprise.com
- Industry
- Financial Services
- Industry
- Financial Servicesllm
Incident
- Discovered
- Jan 5, 2026
- Materiality determined
- —
- Notification sent
- Feb 6, 2026
- Affected individuals
- 2
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIALFINANCIAL_ACCOUNT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566 PhishingT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Initial access
- phishing_link
Compliance
- Time to disclose
- 5 weeks(32 days from discovery to filing)
- Compliance flags
- ME AG >30d · 32d
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
- Clock breakdown
Statute Window Elapsed Threshold Status Maine Discovered: Jan 5, 2026→ Filed with AG: Feb 6, 202632d 30 days (soft) ME AG >30d
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.