Drivestream Inc.
ent_2fb04ebb38f16613
Disclosures
13
State AG · Leak Site · 12 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
91,108
nationwide · State AG OR
Leak-site claims
2
unverified actor claims
Identity resolution
- Canonical name
- Drivestream Inc.
- Normalized
- drivestream— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- drivestream.com
Disclosure history (13)newest first
- Oregon State AGas victim2026-03-31
Drivestream, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2026-03-31. The breach occurred during 12/4/2024 - 12/9/2024. The breach was discovered on 12/9/2024. 91,108 individuals were affected. Notice was sent on 3/31/2026.
- Washington State AGas victim2026-02-27
Drivestream Inc. reported a cyberattack in Washington where an unauthorized actor accessed systems between Dec 4-9, 2024, potentially exfiltrating PII including SSNs, driver's licenses, medical info, and financial data. 505 WA residents affected. Notices began Jan 10, 2025. Law enforcement notified; credit monitoring offered.
- Texas State AGas victim2025-12-22
Drivestream, Inc. based in Leesburg, Virginia, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2024-12-09 and reported on 2025-12-22. 507 Texas residents were affected. 29,407 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Financial Information (e.g. account number, credit or debit card number);Medical Information;Health Insurance Information. Consumers were notified via U.S. Mail.
- California State AGas victim2025-12-19
Drivestream, Inc. notified the California AG of an incident where an unauthorized actor accessed systems between Dec 4-9, 2024, and downloaded files containing employee data (including SSNs) during an HCM migration. Drivestream discovered the activity on Dec 9, 2024. The company engaged law enforcement, secured systems, and is offering credit monitoring. No evidence of misuse was found.
- Illinois State AGas victim2025-12-01
DRIVESTREAM,INC. filed a data-breach notice with the Illinois Attorney General in December 2025 (case 25-12-677). The register records the breach as discovered on December 9, 2024. Personal information types reported: financial account number, medical information, ssn. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Nebraska State AGas victim2025-11-24
Drivestream, Inc. reported a cybersecurity incident to the Nebraska Attorney General involving unauthorized access to its data center between December 4 and December 9, 2024. An unknown actor accessed systems and potentially exfiltrated customer data, including names and financial account information. Drivestream notified federal law enforcement, engaged forensic investigators, and began notifying affected individuals, including three Nebraska residents, starting January 10, 2025. Credit monitoring services were offered to impacted individuals.
- Vermont State AGas victim2025-11-24
Drivestream Inc. notified consumers of a data breach occurring between Dec 4-9, 2024, where an unauthorized actor accessed systems storing employee data during an HCM migration. Impacted data included names combined with government identifiers (SSN, DOB, driver's license). Drivestream reported the incident to law enforcement, is cooperating with the investigation, and is offering credit monitoring services.
- Massachusetts State AGas victim2025-11-17
Drivestream Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2025-11-17. 406 Massachusetts residents were affected.
- New Hampshire State AGas victim2025-11-17
Drivestream, Inc. notified the New Hampshire Attorney General of a data event affecting 17 NH residents. Unauthorized access occurred between Dec 4-9, 2024, involving an unknown actor accessing systems and potentially exfiltrating data (names, SSNs, financial accounts). Drivestream engaged forensic investigators, notified law enforcement, and provided 12 months of credit monitoring via Epiq. Notification to individuals began Jan 10, 2025.
- Indiana State AGas victim2025-11-17
Drivestream Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2024-12-04 and was reported on 2025-11-17. 2 Indiana residents were affected.
- Maine State AGas victim2025-11-17
Drivestream Inc. reported an external system breach (hacking) occurring between Dec 4-9, 2024. An unauthorized actor accessed systems and potentially exfiltrated data including names, SSNs, and financial account info. One Maine resident was affected. Notification was sent Nov 17, 2025. Law enforcement was notified, and credit monitoring was offered.
- GLOBALLeak Siteas victim2025-01-07
Drivestream is a management and IT consulting firm specializing i n migrating the enterprise business processes of large and medium sized businesses to the Cloud. We are ready to upload more than 80 GB of private corporate docum ents including: SSNs, family contacts, contact numbers and e-mail addresses of employees and customers, driver licenses, passports etc.
- GLOBALLeak Siteas victim2024-12-09
Drivestream is a management and IT consulting firm specializing i n migrating the enterprise business processes of large and medium sized businesses to the Cloud. We are ready to upload more than 80 GB of private corporate docum ents including: SSNs, family contacts, contact numbers and e-mail addresses of employees and customers, driver licenses, passports etc.