HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
E&M Insurance LLC
bd_a7bb9a8299be45aa · schema v1 · pii pii-v1
Full breach record for E&M Insurance LLC →E&M Insurance LLC notified the Maryland Attorney General of a cybersecurity incident affecting approximately 6 Maryland residents. Unauthorized actors accessed corporate email accounts between February 8 and February 20, 2024. The company discovered the compromise on December 17, 2024, revealing that personal information (names, SSNs, driver's licenses) was stored in impacted accounts. E&M Insurance engaged forensic investigators, notified affected residents, and provided one year of credit monitoring via Experian.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed6 affectedView incident
Source provenance
- Source URL
- https://oag.maryland.gov/resources-info/SBN%20Documents/2025/ITU-376210.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 13, 2025
- Raw hash
- b36272f5955d7457d1f77e9daba10be96ff0a8fb24f8d3d96953f1e6cd9e0ab6
Reporting entity
- Name
- MCDONALD HOPKINS LLCnorm: mcdonald hopkins
Victim entity
- Name
- E&M Insurance LLCnorm: e m insurance
Incident
- Discovered
- Dec 17, 2024
- Materiality determined
- —
- Notification sent
- Jan 17, 2025
- Affected individuals
- 6
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1114 Email CollectionT1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 47 weeks(331 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.