Lgaa LLC
bd_ef8bf5c94b5da563 · schema v1 · pii pii-v1
Full breach record for Lgaa LLC →2 incidents on fileLGAA, LLC notified Montana regulators of unauthorized access to data center systems between Feb 16 and Mar 18, 2021, exploiting a Microsoft Exchange zero-day vulnerability. The incident affected 11 Montana residents, exposing names, SSNs, medical info, financial accounts, and driver's licenses. LGAA engaged forensic specialists, secured systems, and offered one year of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 16, 2021
Begins
Mar 1, 2021
Discovered
Mar 1, 2022
Filed
vs. sector median
+44 wks slower
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Maine State AGbd_1ce59755f2bbe2982022-03-01Candidate
- Massachusetts State AGbd_b4bc35c8c702e6a42022-03-01Verified
- Indiana State AGbd_bc8237d240d3e2e32022-03-01Verified
- Oregon State AGbd_d3e68223769d42212022-03-01Verified
Filing propagation · 5 filings · 5 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.