BARNES & THORNBURG LLP
ent_019fb40ce484b292f87354c6837c438a
Disclosures
7
State AG · 3 jurisdictions
Multi-filing incidents
6
incidents joining 2+ filings here
Max affected reported
39,090
nationwide · State AG NH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- BARNES & THORNBURG LLP
- Normalized
- barnes thornburg— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300S87V5FFE5XAR67
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (7)newest first
- New Hampshire State AGas reporting2025-06-20
Marin Housing Authority notified NH AG of unauthorized email access discovered Sept 16, 2024. Impacted ~3 NH residents with PII, financial, health, and biometric data. Response included FBI report, forensic engagement, and credit monitoring.
- Massachusetts State AGas victim2022-08-12
Barnes & Thornburg LLP reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2022-08-12. 6 Massachusetts residents were affected. The report records the breach type as electronic.
- Indiana State AGas victim2022-08-12
Barnes & Thornburg LLP reported a data breach to the Indiana Attorney General. The breach occurred on 2021-05-15 and was reported on 2022-08-12. 24 Indiana residents were affected. 103 individuals affected in total.
- New Hampshire State AGas reporting2019-12-04
Indiana Trust and Investment Management Company experienced a targeted phishing attack between August 12-16, 2019, compromising an employee email account. One New Hampshire resident was affected, with data including SSNs, passport numbers, driver's license info, and financial account details exposed. The company engaged forensic investigators, implemented security measures, and provided 12 months of credit monitoring.
- New Hampshire State AGas reporting2017-03-17
Rand McNally notified NH AG of a breach affecting 4 NH residents. Unauthorized access occurred starting Sept 2016 via malware in ecommerce software. Discovered Feb 28, 2017. Data exposed: names, usernames/emails, credit/debit card numbers. Notifications sent March 13, 2017, including 12 months credit monitoring.
- New Hampshire State AGas reporting2016-08-02
The Academy of Nutrition and Dietetics notified the NH Attorney General of a third-party breach involving a telemarketing vendor. The vendor suffered a ransomware attack (April 22-24, 2016) potentially exposing member PII (names, addresses, credit card data). 3 NH residents were notified on July 28, 2016.
- New Hampshire State AGas reporting2015-03-06
Indiana State Medical Association (ISMA) reported the theft of two unencrypted archive hard drives containing personal information of 39,090 individuals. The theft occurred on February 13, 2015, while an employee was transporting the drives to an off-site storage location. Affected data included names, addresses, dates of birth, email addresses, health plan numbers, and for some individuals, social security numbers and medical history. ISMA discovered the theft the same day and reported it to police. Encryption had been disabled by an IT vendor without ISMA's knowledge. ISMA restored encryption, revised policies, and offered one year of credit monitoring.