Social EngineeringPhishingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICMediumContained
D&S Insurance Agency, Inc.
bd_d329af5a4d206c26 · schema v1 · pii pii-v1
Full breach record for D&S Insurance Agency, Inc. →D&S Insurance Agency, Inc. notified the Maryland Attorney General of a security incident affecting one Maryland resident. Unauthorized access to two employee email accounts occurred between February 21, 2024, and March 14, 2024. The breach exposed personal information including names, SSNs, driver's license numbers, financial account data, and health insurance details. D&S engaged forensic investigators, notified the resident on March 24, 2025, and provided 12 months of complimentary credit monitoring.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_07105ba4494caedfCalifornia State AGfiled 2025-03-24(395d gap)Candidate
Source provenance
- Source URL
- https://oag.maryland.gov/resources-info/SBN%20Documents/2025/ITU-376755.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 23, 2026
- Raw hash
- 9d8209fd0af930bee1c7764f8f67bee0f47798eaed7a64d060d79d6579193422
Reporting entity
- Name
- MCDONALD HOPKINS LLCnorm: mcdonald hopkins
Victim entity
- Name
- D&S Insurance Agency, Inc.norm: d s insurance agency
Incident
- Discovered
- Feb 26, 2025
- Materiality determined
- —
- Notification sent
- Mar 24, 2025
- Affected individuals
- 1
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASIC
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- External
- Regulator citations
- Notified the Office of the Maryland Attorney General
- Initial access
- phishing_link
Compliance
- Time to disclose
- 14 months(421 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.