Rochester Philharmonic Orchestra
bd_87fc6915934ecfc8 · schema v1 · pii pii-v1
Full breach record for Rochester Philharmonic Orchestra →2 incidents on fileRochester Philharmonic Orchestra (RPO) notified the Nebraska Attorney General of a data security incident affecting 3 Nebraska residents. Unauthorized access occurred on October 21, 2025, when servers went offline. RPO engaged cybersecurity experts, determining on November 11, 2025, that specific network sections were accessed. Personal information, including names, SSNs, driver's license numbers, health/medical information, and passport numbers, may have been compromised. No evidence of misuse was found. RPO notified residents on May 27, 2026, and offered 12 months of credit monitoring and identity protection services through IDX.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 21, 2025
Begins
Nov 11, 2025
Discovered
May 27, 2026
Filed
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.