TGI Direct, Inc.
ent_5032c74f0d2a12cf4319a24e
TGI Direct, Inc. is a woman- and minority-owned company specializing in print, mail, fulfillment, and direct marketing services, particularly for highly regulated industries. Founded in 1964, it operates facilities in Flint and Ann Arbor, Michigan.
AI-summarized from indexed web sources · Flint, Michigan · 2026-08-04 · source
Disclosures
6
State AG · HHS OCR · Leak Site · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
16,113
nationwide · HHS OCR MI
Leak-site claims
2
unverified actor claims
Identity resolution
- Canonical name
- TGI Direct, Inc.
- Normalized
- tgi direct— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- tgidirect.com
Disclosure history (6)newest first
- Washington State AGas victim2024-01-17
TGI Direct, Inc. disclosed a cybersecurity incident involving the MOVEit file transfer tool. On May 28, 2023, unauthorized access occurred via an exploited vulnerability. The breach exposed names, addresses, Member IDs, and medical/insurance information. TGI notified federal law enforcement, engaged third-party specialists, and applied security patches. Written notice was sent to 3,428 Washington residents on January 17, 2024, offering 12 months of credit monitoring.
- MICHIGANHHS OCRas victim2024-01-17
TGI Direct reported to HHS on 2024-01-17 a Hacking/IT Incident affecting 11,556 individuals. Breached information located on Network Server. A software application exposed PHI including names, dates of birth, addresses, and diagnoses. The business associate notified HHS, affected individuals, and media, provided substitute notice, complimentary credit monitoring, and implemented additional safeguards.
- Montana State AGas victim2023-11-21
TGI Direct, Inc. notified individuals of a breach involving its MOVEit file transfer tool. An unauthorized actor exploited vulnerabilities in the software on May 28, 2023, accessing personal and protected health information for less than four hours. TGI secured its environment, applied patches, and engaged third-party specialists. Notices were sent on November 21, 2023, offering 24 months of credit monitoring.
- MICHIGANHHS OCRas victim2023-11-21
TGI Direct, Inc. reported to HHS on 2023-11-21 a Hacking/IT Incident affecting 16113 individuals. Breached information located on Network Server. A software application exposed PHI including names, DOB, addresses, diagnoses, and health insurance info. BA provided credit monitoring and implemented safeguards.
- GLOBALLeak Siteas victim2023-07-12
- GLOBALLeak Siteas victim2020-03-27
tgidirect.com