CHARLES SCHWAB & CO., INC.
ent_019e60f9e3516d044a034d036134309d
Disclosures
25+
State AG · 6 jurisdictions
Multi-filing incidents
5
incidents joining 2+ filings here
Max affected reported
61,160
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- CHARLES SCHWAB & CO., INC.
- Normalized
- charles schwab— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300ZP8XN77GK5BS04
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- schwab.com
Disclosure history (newest 25)newest first
- Massachusetts State AGas victim2024-03-07
Charles Schwab & Co., Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2024-03-07. 1 Massachusetts residents were affected.
- Indiana State AGas victim2023-08-08
TD Ameritrade, Inc and Charles Schwab & Co., Inc., a TD Ameritrade affiliate reported a data breach to the Indiana Attorney General. The breach occurred on 2023-05-28 and was reported on 2023-08-08. 824 Indiana residents were affected. 61,160 individuals affected in total.
- Massachusetts State AGas victim2023-07-11
Charles Schwab & Co., Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-07-11. 1 Massachusetts residents were affected. The report records the breach type as electronic.
- New Hampshire State AGas victim2023-06-14
Charles Schwab & Co., Inc. notified the NH Attorney General of a security breach involving 3 NH residents. A third-party call-center service provider accessed client accounts without authorization between March 6 and April 19, 2023. Schwab discovered the issue on April 19, 2023, locked accounts, and began notifying clients on June 9, 2023. Affected data included personal and financial account information. Schwab provided 24 months of credit monitoring.
- Indiana State AGas victim2023-06-09
Charles Schwab & Co., Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2023-03-06 and was reported on 2023-06-09. 7 Indiana residents were affected. 774 individuals affected in total.
- Massachusetts State AGas victim2023-06-09
Charles Schwab & Co., Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-06-09. 15 Massachusetts residents were affected. The report records the breach type as electronic.
- Maine State AGas victim2023-06-08
Charles Schwab & Co., Inc. reported an insider wrongdoing incident in Maine affecting 774 individuals (4 Maine residents). The breach occurred between March 6, 2023, and April 19, 2023. Driver's license numbers and names were compromised. Schwab provided written notification and 48 months of credit monitoring via Soniq's IdentityForce.
- Massachusetts State AGas victim2023-05-25
Charles Schwab & Co., Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-05-25. 1 Massachusetts residents were affected. The report records the breach type as paper.
- Massachusetts State AGas victim2022-05-19
Charles Schwab & Co., Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2022-05-19. 2 Massachusetts residents were affected. The report records the breach type as electronic.
- Indiana State AGas victim2022-05-18
Charles Schwab & Co., Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2022-04-20 and was reported on 2022-05-18. 1 Indiana residents were affected. 108 individuals affected in total.
- New Hampshire State AGas victim2022-03-28
Charles Schwab & Co., Inc. notified the NH Attorney General of a data breach affecting 15 NH residents. Between May 18 and Dec 16, 2021, chat/email messages were inadvertently sent to external systems. Data included names, SSNs, IDs, and credentials. Schwab remediated the issue, notified consumers on March 23, 2022, and provided 24 months of credit monitoring.
- Massachusetts State AGas victim2022-03-25
Charles Schwab & Co. Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2022-03-25. 71 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2022-03-23
Charles Schwab & Co., Inc. disclosed that between May 18, 2021, and December 16, 2021, certain chat and email messages sent through Schwab.com were inadvertently sent to external email systems. The incident was discovered on December 16, 2021. Affected data may include names, Social Security numbers, tax ID numbers, driver's license numbers, passport numbers, and usernames/passwords. Schwab stated there is no evidence of misuse or unauthorized access. The company remediated the issue and offered two years of credit monitoring and identity protection services.
- Maine State AGas victim2022-03-23
Financial services firm Charles Schwab & Co., Inc. reported an inadvertent disclosure of personal information affecting 5,083 individuals. The breach, which occurred between May 18, 2021, and December 16, 2021, was discovered on March 4, 2022. The compromised data included names and driver's license or non-driver identification card numbers. The company provided written notification to affected individuals and offered 24 months of credit monitoring and identity protection services.
- Indiana State AGas victim2022-03-23
Charles Schwab & Co., Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2021-05-18 and was reported on 2022-03-23. 36 Indiana residents were affected. 5,083 individuals affected in total.
- Montana State AGas victim2022-03-23
Charles Schwab & Co., Inc. notified Montana residents that between May 18 and December 16, 2021, certain chat and email messages sent through Schwab.com were inadvertently sent to external email systems. Affected data included names, SSNs, tax IDs, driver's licenses, passport numbers, or usernames/passwords. Schwab remediated the issue, offers two years of credit monitoring via IdentityForce, and states there is no evidence of misuse.
- Massachusetts State AGas victim2021-05-12
Charles Schwab & Co., Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-05-12. 1 Massachusetts residents were affected. The report records the breach type as electronic.
- Massachusetts State AGas victim2021-01-08
Charles Schwab & Co., Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-01-08. 1 Massachusetts residents were affected. The report records the breach type as paper.
- Massachusetts State AGas victim2020-11-02
Charles Schwab & Co., Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-11-02. 1 Massachusetts residents were affected. The report records the breach type as paper.
- Massachusetts State AGas victim2020-07-15
Charles Schwab & Co., Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-07-15. 1 Massachusetts residents were affected. The report records the breach type as paper.
- Massachusetts State AGas victim2020-07-01
Charles Schwab & Co., Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-07-01. 1 Massachusetts residents were affected. The report records the breach type as electronic.
- Massachusetts State AGas victim2020-07-01
Charles Schwab & Co., Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-07-01. 2 Massachusetts residents were affected. The report records the breach type as electronic.
- Massachusetts State AGas victim2020-03-05
Charles Schwab & Co., Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-03-05. 2 Massachusetts residents were affected. The report records the breach type as electronic.
- Massachusetts State AGas victim2020-01-08
Charles Schwab & Co., Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-01-08. 1 Massachusetts residents were affected. The report records the breach type as paper.
- Massachusetts State AGas victim2019-12-24
Charles Schwab & Co., Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2019-12-24. 2 Massachusetts residents were affected. The report records the breach type as paper.
Subsidiary disclosures (8)filed by group companies
◈ These filings were made by or about subsidiaries of CHARLES SCHWAB & CO., INC. — not by CHARLES SCHWAB & CO., INC. itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- New Hampshire State AGvia TD AMERITRADE CLEARING, INC.2023-08-09
TD Ameritrade, a subsidiary of Charles Schwab, disclosed a security incident involving MOVEit Transfer software. Between May 28 and May 30, 2023, unauthorized individuals accessed the application and stole personal information, including names. The incident was discovered on May 30, 2023. TD Ameritrade halted use of the software, engaged independent experts, and notified law enforcement. Affected individuals were offered credit monitoring services.
- Oregon State AGvia TD AMERITRADE CLEARING, INC.2023-08-08
TD Ameritrade, Inc. and Charles Schwab & Co., Inc., a TD Ameritrade affiliate. reported a data breach to the Oregon Attorney General. The breach was reported on 2023-08-08. 61,160 individuals were affected.
- Montana State AGvia TD AMERITRADE CLEARING, INC.2023-08-08
TD Ameritrade, Inc. notified Montana residents of a data breach involving MOVEit Transfer software. Unauthorized access occurred between May 28-30, 2023, resulting in the theft of names, SSNs, and potentially financial account data. TD Ameritrade halted the software, engaged experts, and notified law enforcement. Affected individuals are offered two years of credit monitoring.
- Washington State AGvia TD AMERITRADE CLEARING, INC.2023-08-08
TD Ameritrade, Inc. reported a cybersecurity incident involving the MOVEit Transfer software. Between May 28 and May 30, 2023, unauthorized individuals accessed the application and stole data including names, Social Security numbers, and potentially financial account information. The incident was discovered on May 30, 2023. Notices were sent to affected individuals on August 3, 2023. 1,662 Washington residents were affected. TD Ameritrade halted use of the software, engaged independent experts, notified law enforcement, and offered two years of credit monitoring.
- Maine State AGvia TD AMERITRADE CLEARING, INC.2023-08-08
TD Ameritrade, Inc. and Charles Schwab & Co., Inc. reported an external system breach (hacking) occurring between May 28 and May 30, 2023, discovered on August 1, 2023. The incident affected 61,160 individuals, including 143 Maine residents. Acquired data included names and financial account or credit/debit card numbers (with security codes, PINs, or passwords). Affected individuals were notified in writing on August 8, 2023, and offered 24 months of identity theft protection services.
- California State AGvia TD AMERITRADE CLEARING, INC.2023-08-08
TD Ameritrade, Inc. disclosed a data breach involving unauthorized access to its MOVEit Transfer software application between May 28 and May 30, 2023. The incident was discovered on May 30, 2023. Affected data includes names, Social Security numbers, financial account information, dates of birth, and government ID numbers. TD Ameritrade halted use of the software, engaged independent experts, notified law enforcement, and is offering two years of credit monitoring.
- GLOBALLeak Sitevia TD AMERITRADE CLEARING, INC.2023-07-07
Online Stock Trading, Investing, Brokerage - TD Ameritrade
- Hawaii State AGvia TD AMERITRADE CLEARING, INC.2007-09-14
TD Ameritrade reported a data breach to the Hawaii Office of Consumer Protection. The office was notified on 2007/09.14. Breach type: Hackers/Unauthorized Access. 33,157 Hawaii residents were affected. Recovered from the Internet Archive after the notice was removed from the OCP table.