INSURANCE OFFICE OF AMERICA, INC.
ent_019dee63611a4440fac0a2e872fa0a26
Disclosures
10
State AG · Leak Site · 8 jurisdictions
Multi-filing incidents
3
incidents joining 2+ filings here
Max affected reported
12,913
nationwide · State AG TX
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- INSURANCE OFFICE OF AMERICA, INC.
- Normalized
- insurance office of america— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 254900BCXDV2M4V9V771
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- ioausa.com
Disclosure history (10)newest first
- New Hampshire State AGas victim2026-06-22
Insurance Office of America (IOA) notified the NH Attorney General of an incident on May 14, 2026, where an employee inadvertently attached a benefits report containing personal information (names, SSNs, health insurance enrollment details) to a routine email. The email was recalled within minutes. IOA determined that 3 New Hampshire residents were affected. IOA notified affected individuals on June 22, 2026, and is offering 24 months of credit monitoring. IOA implemented process improvements and additional training.
- Massachusetts State AGas victim2026-06-22
Insurance Office of America notified individuals that on May 14, 2026, an employee inadvertently attached a document containing personal information, including names, Social Security numbers, and protected health information (insurance elections, coverage, contributions), to a routine benefits-related email. The company immediately recalled the email from internal mailboxes and obtained attestations of deletion from recipients. Enhanced safeguards and training were implemented. Complimentary credit monitoring was offered.
- Texas State AGas victim2026-01-21
Insurance Office of America based in Longwood, Florida, a insurance services entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-01-11 and reported on 2026-01-21. 446 Texas residents were affected. 12,913 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Other;Date of Birth. Consumers were notified via U.S. Mail.
- New Hampshire State AGas victim2026-01-16
Insurance Office of America (IOA) notified the New Hampshire Attorney General on January 16, 2026, of a phishing incident affecting 54 NH residents. Unauthorized access occurred between June 25-30, 2025, resulting in the exposure of names and Social Security numbers. IOA engaged forensic experts, notified law enforcement, and provided 24 months of credit monitoring to affected individuals.
- Nebraska State AGas victim2026-01-16
Insurance Office of America (IOA) notified Nebraska residents of a data breach discovered on June 30, 2025. An unauthorized party gained access to IOA's network via a phishing email between June 25 and June 30, 2025. Affected data included names and variable personal data. IOA engaged external cybersecurity experts, conducted a detailed file review, and provided 24 months of complimentary credit monitoring through Epiq to affected individuals.
- California State AGas victim2026-01-16
Insurance Office of America (IOA) disclosed a data breach discovered on June 30, 2025, resulting from a phishing email attack. Unauthorized access occurred between June 25 and June 30, 2025. Affected data includes personally identifiable information (name) and potentially protected health information. IOA engaged external cybersecurity experts, contained the incident, and is offering 24 months of credit monitoring via Epiq.
- Indiana State AGas victim2026-01-16
Insurance Office of America Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2025-06-25 and was reported on 2026-01-16. 240 Indiana residents were affected. 12,913 individuals affected in total.
- Maine State AGas victim2026-01-16
Insurance Office of America (IOA) disclosed a phishing-based security incident occurring June 25-30, 2025, discovered Jan 11, 2026. Unauthorized access led to the potential acquisition of personal information (names, government IDs) for 12,913 individuals, including 15 Maine residents. IOA engaged external experts, contained the breach, and provided 24 months of credit monitoring via Epiq to affected individuals.
- Massachusetts State AGas victim2026-01-16
Insurance Office of America (IOA) notified Massachusetts residents of a security incident discovered on June 30, 2025. IOA, which provides insurance-related services to carriers, health plans, and employers, engaged external cybersecurity experts to investigate. The incident potentially affected personal information, including full names and other variable data, and possibly protected health information. IOA contained the event and is offering 24 months of complimentary credit monitoring through Epiq. No specific attack vector or threat actor was identified.
- GLOBALLeak Siteas victim2025-09-11
Insurance Office of America (IOA) is a premier, full-service insurance agency dedicated to delivering bespoke insurance solutions since 1988. We’re one of the USA’s fastest-growing agencies.