AMERIPRISE FINANCIAL, INC.
ent_019dd18ad5ce22e113ef3df71ad7a45b
Disclosures
25+
State AG · Leak Site · 15 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
47,876
nationwide · State AG TX
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- AMERIPRISE FINANCIAL, INC.
- Normalized
- ameriprise financial— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 6ZLKQF7QB6JAEKQS5388
- SEC EDGAR CIK
- 0000820027
- Domain
- ameriprise.com
Disclosure history (newest 25)newest first
- New Hampshire State AGas victim2026-07-29
Ameriprise Financial, Inc. filed a supplemental notice with the New Hampshire Attorney General on July 29, 2026, regarding a data incident initially reported in April 2026. The breach involved unauthorized access to stored data, potentially exposing names, addresses, account numbers, DOBs, SSNs, and driver's license info for 552 individuals (119 NH residents). Discovery was March 18, 2026. The investigation is concluded, and credit/identity monitoring was offered.
- Texas State AGas victim2026-04-22
Ameriprise Financial, Inc. based in Minneapolis, Minnesota, a financial services entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-03-18 and reported on 2026-04-22. 2,390 Texas residents were affected. 47,876 individuals affected in total. Types of information involved: Name of individual;Social Security Number Information;Financial Information (e.g. account number, credit or debit card number);Date of Birth. Consumers were notified via U.S. Mail.
- South Carolina State AGas victim2026-04-20
Ameriprise Financial, Inc. notified South Carolina and other states of a data security incident discovered on March 18, 2026. An unauthorized individual gained access to stored data containing personal information. Ameriprise blocked access, engaged external cybersecurity experts, and is offering 12 months of credit and identity monitoring via Equifax.
- Vermont State AGas victim2026-04-17
Ameriprise Financial, Inc. reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-04-17. The reporting organization type is Financial Services. 83 Vermont residents were affected. Categories of data breached: Social Security Numbers, Financial Account Codes, Credit or Debit Account Info.
- Massachusetts State AGas victim2026-04-17
Ameriprise Financial, Inc. notified Massachusetts residents of a data security incident where an unauthorized individual gained access to stored data and files. The company blocked the access upon discovery on March 18, 2026. Affected data may include personal information such as names, addresses, and financial account numbers. Ameriprise engaged external cybersecurity experts, implemented enhanced identity verification, and is offering 12 months of credit monitoring.
- New Hampshire State AGas victim2026-04-17
Ameriprise Financial, Inc. notified the New Hampshire Attorney General on April 17, 2026, of a data incident discovered on March 18, 2026. An unauthorized individual accessed stored data, potentially affecting 433 NH residents. Affected data included names, addresses, account numbers, DOB, and SSNs. No unauthorized fund movements occurred. Ameriprise engaged external cybersecurity experts, enhanced account monitoring, and offered 12 months of free credit/identity monitoring via Equifax.
- Maine State AGas victim2026-04-17
Ameriprise Financial, Inc. reported a data breach occurring on March 2, 2026, discovered on March 18, 2026. An unauthorized individual accessed stored data/files potentially containing personal information. 47,876 individuals were affected, including 335 Maine residents. Ameriprise engaged external cybersecurity experts, blocked access, and offered 12 months of Equifax credit/identity monitoring.
- Iowa State AGas victim2026-04-17
Ameriprise Financial, Inc. notified the Iowa Attorney General of a data incident discovered on March 18, 2026. An unauthorized individual accessed stored data/files potentially containing names, addresses, DOBs, SSNs, and account numbers. 583 Iowa residents affected. Ameriprise blocked access, engaged external experts, implemented enhanced identity verification, and offered 12 months of credit/identity monitoring.
- Indiana State AGas victim2026-04-17
Ameriprise Financial Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2026-03-02 and was reported on 2026-04-17. 592 Indiana residents were affected. 47,876 individuals affected in total.
- Rhode Island State AGas victim2026-04-17
Ameriprise notified the Rhode Island Attorney General on April 17, 2026, of a data incident discovered on March 18, 2026. An unauthorized individual accessed stored data/files, potentially affecting 256 RI residents. Affected data included names, addresses, account numbers, DOB, and SSNs. No unauthorized transactions occurred. Ameriprise blocked access, engaged external cybersecurity experts, implemented enhanced identity verification, and is offering free credit/identity monitoring.
- Nebraska State AGas victim2026-04-17
Ameriprise Financial, Inc. notified Nebraska residents of a data security incident where an unauthorized individual gained access to stored data. Discovery occurred on March 18, 2026. Affected data may include personal, government ID, and financial account information. Ameriprise engaged external cybersecurity experts, implemented enhanced identity verification, and offered 12 months of credit and identity monitoring via Equifax.
- California State AGas victim2026-04-17
Ameriprise Financial, Inc. reported that an unauthorized individual gained access to certain stored data and files on March 2, 2026. The company blocked the access upon discovery on March 18, 2026, and launched an investigation with external cybersecurity experts. Affected data may include personal information such as names, addresses, and financial account details. Ameriprise is offering 12 months of credit and identity monitoring to affected individuals.
- Oregon State AGas victim2026-04-17
Ameriprise Financial, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2026-04-17. The breach occurred during 3/2/2026 - 3/18/2026. The breach was discovered on 3/18/2026. 47,876 individuals were affected. Notice was sent on 4/17/2026.
- Washington State AGas victim2026-04-17
Supplemental notice from Ameriprise Financial, Inc. regarding unauthorized access to stored data affecting 1,359 Washington residents. Incident occurred March 2-18, 2026; discovered March 18, 2026. Data exposed included names, addresses, SSNs, DOBs, account numbers, and driver's license info. Investigation concluded; credit monitoring offered.
- Illinois State AGas victim2026-04-01
AMERIPRISE FINANCIAL, INC. filed a data-breach notice with the Illinois Attorney General in April 2026 (case 26-04-1137). The register records the breach as discovered on March 18, 2026. Personal information types reported: financial account number, ssn. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- GLOBALLeak Siteas victim2026-03-22
Salesforce records containing PII and over 200GB compressed Sharepoint internal corporate data have been compromised. This is a final warning to reach out by 25 Mar 2026 before we leak along with several annoying (digital) problems that'll come your way. Make the right decision, don't be the next headline. | Updated: 23 Mar 2026 | Warning: FINAL WARNING
- New Hampshire State AGas victim2026-02-06
Ameriprise Financial Services, LLC notified the NH Attorney General of a data breach affecting 2 New Hampshire residents. On January 5, 2026, a financial advisor clicked a phishing link, installing remote access software (ITagent). Potentially compromised data included names, SSNs, driver's license numbers, and financial account details. Ameriprise implemented enhanced verification procedures and offered one year of credit monitoring.
- Maine State AGas victim2026-02-06
Ameriprise Financial Services LLC reported a phishing incident affecting 305 individuals, including 2 Maine residents. The breach occurred on January 5, 2026, when an advisor's account was compromised via a phishing email. Potentially exposed data included names, addresses, SSNs, driver's license numbers, and financial account details. Notices were sent on February 6, 2026, offering 12 months of credit monitoring.
- Massachusetts State AGas victim2026-01-02
Ameriprise Financial Services, LLC notified Massachusetts residents that a financial advisor was victimized by a phishing email on December 9, 2025. The incident potentially exposed client information including names, addresses, SSNs, driver's license numbers, financial account details, and medical information. The company contained the incident, investigated the scope, and implemented enhanced verification procedures. No evidence of actual data access was found, but credit monitoring was offered as a precaution.
- New Hampshire State AGas victim2026-01-02
Ameriprise Financial Services, LLC notified the New Hampshire Attorney General of a phishing incident on December 4, 2025, affecting 50 New Hampshire residents. An advisor's email account was compromised via a phishing email, potentially exposing client PII, financial data, and medical information. Ameriprise contained the incident and offered one year of credit monitoring to affected individuals.
- Maine State AGas victim2026-01-02
Ameriprise Financial Services, LLC reported a phishing incident on Dec 4, 2025, affecting 598 individuals (52 in Maine). An advisor's account was compromised via a phishing email, potentially exposing client PII, SSNs, financial data, and medical info. No evidence of actual data access was found. Notices sent Dec 30, 2025, with credit monitoring offered.
- Indiana State AGas victim2025-12-30
Ameriprise Financial Services LLC reported a data breach to the Indiana Attorney General. The breach occurred on 2025-12-09 and was reported on 2025-12-30. 7 Indiana residents were affected. 457 individuals affected in total.
- Texas State AGas victim2025-12-29
Ameriprise Financial Services, LLC based in Minneapolis, Minnesota, a financial services entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-11-12 and reported on 2025-12-29. 411 Texas residents were affected. 702 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Driver’s License number;Financial Information (e.g. account number, credit or debit card number);Medical Information;Other;Date of Birth. Consumers were notified via U.S. Mail.
- Massachusetts State AGas victim2025-12-22
Ameriprise Financial Services, LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2025-12-22. 1 Massachusetts residents were affected.
- Nebraska State AGas victim2025-12-22
Ameriprise Financial Services, LLC reported a phishing incident on November 11, 2024, where an advisor's staff member received a malicious email. A bad actor potentially accessed client information, including SSN, driver's license, and financial data. No evidence of actual access was found. Ameriprise offered complimentary Equifax credit monitoring and enhanced verification procedures.
Subsidiary disclosures (2)filed by group companies
◈ These filings were made by or about subsidiaries of AMERIPRISE FINANCIAL, INC. — not by AMERIPRISE FINANCIAL, INC. itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- Indiana State AGvia RIVERSOURCE LIFE INSURANCE COMPANY2023-09-19
RiverSource Life Insurance Co reported a data breach to the Indiana Attorney General. The breach occurred on 2023-07-31 and was reported on 2023-09-19. 2 Indiana residents were affected. 125 individuals affected in total.
- Maine State AGvia RIVERSOURCE LIFE INSURANCE COMPANY2023-03-03
RiverSource Life Insurance Company reported a data breach affecting one individual due to a missing FedEx package containing personal information. The incident occurred on January 27, 2023, and was discovered on February 27, 2023. The compromised information included the individual's name and Social Security Number. The company provided written notification to the affected person on March 3, 2023, and offered one year of identity theft protection services.