Maritz Holdings Inc.
ent_019dd1b4f592bbca66a8b246d4434508
Disclosures
13
State AG · Leak Site · HHS OCR · 11 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
4,906
nationwide · State AG TX
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- Maritz Holdings Inc.
- Normalized
- maritz holdings— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 54930017AITQZZLDQE61
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- maritz.com
Disclosure history (13)newest first
- Texas State AGas victim2026-04-06
Maritz Holdings Inc. (“Maritz”) based in St. Louis, Missouri, a business – retail or merchant entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-11-13 and reported on 2026-04-06. 320 Texas residents were affected. 4,906 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Financial Information (e.g. account number, credit or debit card number). Consumers were notified via U.S. Mail.
- New Hampshire State AGas victim2026-04-03
Maritz Holdings, Inc. filed a supplemental notice with the New Hampshire Attorney General regarding a cybersecurity incident involving an exploit of a previously unknown vulnerability in Oracle E-Business Suite. The incident occurred between August 10-13, 2025. The breach affected 11 New Hampshire residents, exposing names and other personal information. Maritz engaged cybersecurity experts, notified law enforcement, and offered 24 months of credit monitoring.
- California State AGas victim2026-04-03
Maritz Holdings Inc disclosed that an unauthorized third party exploited a previously unknown (zero-day) vulnerability in Oracle E-Business Suite to access and exfiltrate files from Maritz's environment between August 10 and August 13, 2025. The company became aware of the potential access in November 2025. Affected data includes names and other personal information. Maritz engaged third-party experts, notified law enforcement, and is offering 24 months of credit monitoring.
- California State AGas victim2026-02-27
Maritz Holdings Inc. disclosed that an unauthorized third-party exploited a previously unknown vulnerability in Oracle E-Business Suite to access and exfiltrate files between August 10 and August 13, 2025. The company became aware of the incident in November 2025. Affected data includes names and other personal information. Maritz engaged forensic experts, notified law enforcement, and is offering 24 months of credit monitoring.
- Indiana State AGas victim2026-02-27
Maritz Holdings Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2025-08-10 and was reported on 2026-02-27. 75 Indiana residents were affected. 4,906 individuals affected in total.
- New Hampshire State AGas victim2026-02-27
Maritz Holdings, Inc. notified the New Hampshire Attorney General of a security incident involving its Oracle E-Business Suite. An unauthorized third party exploited a zero-day vulnerability between August 10-13, 2025, to exfiltrate data. The breach affected 3 New Hampshire residents, exposing names and Social Security numbers. Maritz engaged forensic experts, notified law enforcement, patched the system, and offered 24 months of credit monitoring.
- Nebraska State AGas victim2026-02-27
Maritz Holdings Inc disclosed a cybersecurity incident involving unauthorized access to its Oracle E-Business Suite (EBS) environment. An unauthorized third party accessed data between August 10-13, 2025, exploiting a previously unknown vulnerability in Oracle EBS. Maritz discovered the incident in November 2025, engaged forensic experts, and notified law enforcement. The incident involved personal information (names) of affected individuals. Maritz is offering 24 months of complimentary credit monitoring via Experian IdentityWorks. The notification was sent in February 2026.
- Vermont State AGas victim2026-02-27
Maritz Holdings disclosed a data breach affecting its Oracle E-Business Suite (EBS) environment. An unauthorized third party exploited a previously unknown vulnerability (zero-day) in Oracle EBS to access files between August 10-13, 2025. The incident involved the exfiltration of personal information, including names. Maritz engaged cybersecurity experts and notified law enforcement, offering 24 months of credit monitoring to affected individuals.
- Massachusetts State AGas victim2026-02-27
Maritz Holdings Inc experienced a cybersecurity incident involving the exploitation of a previously unknown vulnerability in Oracle E-Business Suite. An unauthorized third-party accessed and obtained files from Maritz's Oracle EBS environment between August 10, 2025, and August 13, 2025. The company became aware of the incident in November 2025. Personal information, including names, was involved. Six Rhode Island residents were affected. Maritz engaged third-party experts, notified law enforcement, and is offering 24 months of credit monitoring.
- Maine State AGas victim2026-02-27
Maritz Holdings Inc. reported a data breach in Maine affecting 4 residents. Unauthorized access occurred Aug 10-13, 2025, via exploitation of a previously unknown vulnerability in Oracle E-Business Suite. Maritz discovered the incident in Nov 2025, engaged forensic experts, notified law enforcement, and sent notifications on Feb 27, 2026, offering 24 months of credit monitoring.
- GLOBALLeak Siteas victim2025-11-13
Maritz.com is a sales and marketing services company. Located in St. Louis, Missouri, it offers customer experience (CX) solutions, including advertising, digital marketing, sales channels, performance improvement initiatives, travel services, corporate trade and reward programs. With a presence in 28 different countries, Maritz uses a customer-first approach to draw actionable insights and support businesses to drive growth.
- MISSOURIHHS OCRas victim2021-04-06
Maritz Holdings Inc. (Health Plan, MO) reported to HHS on 2021-04-06 an Unauthorized Access/Disclosure affecting 1,298 individuals. A workforce member inadvertently sent a document containing ePHI — including names, addresses, and dates of birth — to wrong email recipients. The CE notified HHS, affected individuals, and the media, strengthened administrative/technical safeguards, and retrained staff. OCR provided Security Rule technical assistance. Breached information located on Email.
- Montana State AGas victim2016-05-23
Maritz Holdings, Inc. notified Montana residents of a security incident occurring March 1-17, 2016, discovered April 7, 2016. Unauthorized access may have exposed names and Social Security numbers. No evidence of compromise was found. The company engaged forensic experts, notified law enforcement, and offered one year of credit monitoring via Equifax.