TAFT STETTINIUS & HOLLISTER LLP
ent_019e22fe1956bbab5e83275d714643f8
Disclosures
14
State AG · 7 jurisdictions
Incidents
5
filings grouped by incident
Max affected reported
5,980
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- TAFT STETTINIUS & HOLLISTER LLP
- Normalized
- taft stettinius hollister— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300NX6LONHGNMFZ09
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (14)newest first
- 🍁Vermont State AGas victim2026-07-29
Taft Stettinius & Hollister LLP reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-07-29. The reporting organization type is Other Commercial. 16 Vermont residents were affected. Categories of data breached: Social Security Numbers.
- 🏛️Massachusetts State AGas victim2026-07-01
Taft Stettinius & Hollister LLP, a law firm, issued a Massachusetts data breach notification regarding an incident involving personal information of clients. The firm represented clients on federal health care filing and compliance requirements. The breach involved personal data including names, Social Security Numbers, dates of birth, and addresses. The firm engaged Kroll to provide complimentary identity monitoring services, including credit monitoring and fraud consultation, to affected individuals.
- 🦀Maryland State AGas reporting2026-04-23
ATLAS CPAs and Advisors PLLC disclosed a security incident discovered on December 10, 2024, involving unauthorized access by an external threat actor. The actor used valid credentials to access systems and exfiltrated files containing Social Security numbers and financial account information. The breach affected 3 Maryland residents. ATLAS engaged forensic experts, notified law enforcement, reset credentials, and offered 12 months of credit monitoring via Experian. Notification to residents was expected by March 24, 2025.
- 🦀Maryland State AGas reporting2026-04-23
Pacific Residential Mortgage, LLC reported a ransomware incident to the Maryland Attorney General on March 25, 2025. The company detected the ransomware lockdown on February 10, 2025. The breach impacted 7 Maryland residents, exposing names, addresses, SSNs, driver's license numbers, and financial account information. Pac Res engaged a cybersecurity firm, recovered systems from backups, notified law enforcement, and provided 12 months of credit monitoring via TransUnion/Cyberscout.
- ⛰️New Hampshire State AGas reporting2025-10-14
Legacy 5 Corporate Services, LLC reported a ransomware incident discovered on September 15, 2025, where an external actor encrypted data on an archival hard drive after gaining unauthorized network access. One New Hampshire resident (employee) was affected. Data at risk included names, SSNs, DOBs, addresses, and financial account info. The company engaged forensic investigators, secured the network, and coordinated with law enforcement.
- ⛰️New Hampshire State AGas reporting2025-07-14
BMW Financial Services NA, LLC and BMW Bank of North America reported a data breach affecting 56 New Hampshire residents. The incident originated from a third-party service provider, AIS InfoSource LP, which experienced unauthorized access to its systems between February 16-21, 2025. BMW FS discovered the impact on its customer data on June 3, 2025. Compromised data included names, SSNs, and financial account numbers. Affected individuals were offered 12 months of credit monitoring.
- 🦬Montana State AGas victim2024-05-24
Taft Stettinius & Hollister LLP reported a data breach to the Montana Attorney General. The breach was reported on 2024-05-24. The breach occurred on 2/12/2024. 2 Montana residents were affected.
- 🏎️Indiana State AGas victim2024-05-24
Taft Stettinius & Hollister LLP reported a data breach to the Indiana Attorney General. The breach occurred on 2023-09-28 and was reported on 2024-05-24. 41 Indiana residents were affected. 1,377 individuals affected in total.
- ⛰️New Hampshire State AGas victim2024-04-18
Taft Stettinius & Hollister LLP notified the New Hampshire Attorney General on April 18, 2024, of an unauthorized access incident affecting two New Hampshire residents. The firm notified federal law enforcement, provided credit monitoring via Experian, and implemented security safeguards. The specific data types were redacted in the filing but likely included identity information.
- 🦬Montana State AGas victim2024-04-18
Taft Stettinius & Hollister LLP reported a data breach to the Montana Attorney General. The breach was reported on 2024-04-18. The breach occurred on 10/20/2023. 2 Montana residents were affected.
- 🏎️Indiana State AGas victim2024-04-18
Taft Stettinius & Hollister LLP reported a data breach to the Indiana Attorney General. The breach occurred on 2023-10-17 and was reported on 2024-04-18. 89 Indiana residents were affected. 5,980 individuals affected in total.
- 🦞Maine State AGas victim2024-04-18
Taft Stettinius & Hollister LLP, a law firm, reported a data breach impacting 5,980 individuals, including two residents of Maine. The breach, described as an external system breach (hacking), occurred on October 17, 2023, and was discovered on April 3, 2024. The compromised information included names and Social Security Numbers. Affected individuals were notified on April 18, 2024, and offered 24 months of credit monitoring and identity protection services through Experian.
- 🦞Maine State AGas victim2024-03-11
Taft Stettinius & Hollister LLP, a law firm, reported an external system breach that occurred on October 17, 2023, and was discovered on February 23, 2024. The incident affected one Maine resident, whose name and Social Security number were compromised. The firm provided written notification to the affected individual on March 11, 2024, and offered 12 months of credit monitoring and identity protection services through Experian.
- 🦞Maine State AGas reporting2023-07-17
The Vitality Group, LLC reported a third-party software breach involving Progress Software's MOVEit on May 30, 2023. The incident compromised names and Social Security Numbers of 2,071 individuals, including 1 Maine resident. Notification was sent on July 7, 2023, with 24 months of credit monitoring offered.