CMS Companies
ent_08a669e3fded74c2ce6c1273
Disclosures
2
State AG · 2 jurisdictions
Incidents
—
no linked incident in sample
Max affected reported
2,284
as filed · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- CMS Companies
- Normalized
- cms companies— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- cmsco.com
Disclosure history (2)newest first
- ⛰️New Hampshire State AGas victim2022-02-22
State AG breach notification filed by CMS Companies in New Hampshire on February 22, 2022. The attached PDF document is empty (15 blank pages). No breach details, dates, data types, or response actions are present in the source text.
- 🦞Maine State AGas victim2022-02-04
CMS Companies, a financial services provider based in Wynnewood, PA, reported an external system breach (hacking) occurring between July 17 and July 20, 2021. The incident was discovered on January 4, 2022, affecting 2,284 individuals, including 3 Maine residents. The breach compromised names and financial account numbers (including credit/debit card numbers with security codes/PINs). CMS Companies sent written notifications on February 4, 2022, and provided 24 months of identity theft protection services through IDX.