Empathia
ent_3c1ef38226b1dfde20c74765
Disclosures
6
State AG · 6 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
1,138
as filed · State AG SC
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Empathia
- Normalized
- empathia— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- empathia.com
Disclosure history (6)newest first
- South Carolina State AGas victim2016-06-10
Empathia Inc. notified individuals of a data breach discovered on January 30, 2016, involving spam files on a data server. The incident potentially exposed names, addresses, phone numbers, and Social Security numbers of individuals who requested credit checks in 2003-2004. No evidence of data misuse was found. Empathia engaged forensic investigators, enhanced network security, and offered 12 months of credit monitoring.
- New Hampshire State AGas victim2016-06-06
Empathia, Inc. notified the New Hampshire Attorney General of a data event affecting 72 state residents. On January 30, 2016, spam files were discovered on a data server. The server contained personal information (names, addresses, phone numbers, SSNs) of individuals who requested credit checks in 2003-2004. No evidence of actual misuse was found, but notice was provided out of caution. Affected individuals received credit monitoring services.
- Washington State AGas victim2016-06-06
Empathia, Inc. notified Washington AG of a data event affecting 602 residents. On Jan 30, 2016, spam files were discovered on a server. Forensic investigation revealed potential access to PII including SSNs, names, and addresses. No evidence of misuse found. Notices mailed June 3, 2016, offering 1 year of credit monitoring.
- Massachusetts State AGas victim2016-06-06
Empathia Inc reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2016-06-06. 289 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2016-06-06
Empathia, Inc. discovered spam files on a data server on January 30, 2016. A forensic investigation revealed the spam spread to a second domain containing a file with customer information (name, address, phone, SSN) from 2003-2004. No evidence of data access or misuse was found; the unauthorized access appeared intended only to spread spam. Empathia engaged a third-party forensic investigator, increased IT security, and offered 12 months of credit monitoring.
- Montana State AGas victim2016-06-03
Empathia, Inc. notified individuals of a data breach discovered on January 30, 2016, involving spam files on a data server. The incident potentially exposed names, addresses, phone numbers, and Social Security numbers. No evidence of misuse was found. Empathia engaged forensic investigators and provided 12 months of credit monitoring.