Kovack Financial
ent_25c152ea953be27614e729be
Disclosures
13
State AG · 9 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
109,506
nationwide · State AG OR
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Kovack Financial
- Normalized
- kovack financial— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (13)newest first
- Texas State AGas victim2026-08-14
Kovack Financial, LLC based in Fort Lauderdale, Florida, a financial services entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-07-16 and reported on 2026-08-14. 3,301 Texas residents were affected. 109,506 individuals affected in total. Types of information involved: Name of individual;Social Security Number Information;Driver’s License number;Government-issued ID number (e.g. passport, state ID card);Financial Information (e.g. account number, credit or debit card number). Consumers were notified via U.S. Mail.
- Oregon State AGas victim2026-08-10
Kovack Financial, LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2026-08-10. The breach occurred during 8/8/2025 - 8/27/2025. The breach was discovered on 8/28/2025. 109,506 individuals were affected. Notice was sent on 8/10/2026.
- Washington State AGas victim2026-08-10
Kovack Financial, LLC reported a ransomware incident to the Washington Attorney General. Unauthorized access occurred between August 8 and August 27, 2025, discovered on August 28, 2025. The breach affected 657 Washington residents, exposing names, SSNs, driver's licenses, passport numbers, payment card info, medical data, and financial account details. Kovack notified law enforcement, provided 12 months of credit monitoring via TransUnion, and implemented additional employee safeguards. Notices were sent on August 10, 2026.
- California State AGas victim2026-08-10
Kovack Financial, LLC notified the California AG of an unauthorized access incident. An unknown actor accessed files between August 8 and August 27, 2025. The company became aware of suspicious activity on August 28, 2025. Investigation concluded on July 16, 2026, that customer information was involved. Approximately 84 Rhode Island residents were impacted. The company secured its network, launched an investigation, and offered 12 months of credit monitoring.
- New Hampshire State AGas victim2026-08-10
Kovack Financial, LLC notified the NH Attorney General of an incident where an unknown actor accessed files containing names, SSNs, driver's license numbers, and financial account information of 318 NH residents. Access occurred between August 8-27, 2025; suspicious activity was detected on August 28, 2025. The company secured its network, notified law enforcement, and is providing 12 months of credit monitoring.
- Massachusetts State AGas victim2026-08-10
Kovack Financial, LLC notified Massachusetts residents of a security incident involving personal information. Due to Massachusetts law requirements, the specific nature of the event was not disclosed in the letter. The company offered 24 months of complimentary credit monitoring and identity restoration services via Cyberscout. No specific dates for discovery or occurrence were provided in the notice.
- Vermont State AGas victim2026-08-10
Kovack Financial, LLC reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-08-10. The reporting organization type is Financial Services. 243 Vermont residents were affected. Categories of data breached: Social Security Numbers, Government ID Numbers, Financial Account Codes, Credit and Debit Account Info.
- Illinois State AGas victim2026-08-01
KOVACK FINANCIAL, LLC filed a data-breach notice with the Illinois Attorney General in August 2026 (case 26-08-1384). The register records the breach as discovered on July 16, 2026. Personal information types reported: drivers license, financial account number, passport number, ssn. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Massachusetts State AGas victim2024-07-10
Kovack Financial reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2024-07-10. 689 Massachusetts residents were affected.
- Vermont State AGas victim2024-07-09
Kovack Financial notified consumers of a data breach where unauthorized parties accessed email accounts containing personal information (names) between August 15 and September 5, 2023. The incident was discovered on September 5, 2023. The company engaged external cybersecurity professionals and is offering complimentary identity defense services to affected individuals.
- California State AGas victim2024-07-09
Kovack Financial reported that an unauthorized party gained access to certain email accounts. The company learned of the incident on September 5, 2023. Investigation revealed that files containing personal information (full name) may have been accessed and acquired between August 15, 2023, and September 5, 2023. The company engaged external cybersecurity professionals and is offering identity protection services to affected individuals.
- Maine State AGas victim2024-07-09
Kovack Financial reported an external system breach (hacking) where unauthorized parties accessed email accounts containing personal information. The incident occurred between August 15, 2023, and September 5, 2023, and was discovered on June 10, 2024. Approximately 43,324 individuals were affected, including 236 Maine residents. Affected data included names and government identifiers. Kovack Financial engaged external cybersecurity professionals and offered 12 months of complimentary credit monitoring.
- Illinois State AGas victim2024-07-01
KOVACK FINANCIAL filed a data-breach notice with the Illinois Attorney General in July 2024 (case 24-07-045). The register records the breach as discovered on August 15, 2023. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.