Jackson Lewis
ent_5aaf7ee03069c494
Disclosures
16
State AG · Leak Site · HHS OCR · 6 jurisdictions
Incidents
8
filings grouped by incident
Max affected reported
20,647
as filed · State AG ME
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- Jackson Lewis
- Normalized
- jackson lewis— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- jacksonlewis.com
Disclosure history (16)newest first
- ⛰️New Hampshire State AGas reporting2026-06-02
Yorozu Automotive Tennessee, Inc. notified the New Hampshire Attorney General of a ransomware incident occurring October 9-13, 2024. The breach affected 2 New Hampshire residents, exposing PII including SSNs, driver's licenses, financial account info, and medical data. The organization engaged third-party experts, enhanced security controls (MFA, password updates), and provided 12 months of credit monitoring to affected individuals.
- GLOBALLeak Siteas victim2026-04-22
Jackson Lewis P.C. is a United States-based law firm specializing exclusively in workplace law and employment-related legal services. Founded in 1958 and headquartered in New York, the firm operates across numerous offices throughout the country. It advises employers on labor relations, workplace safety, litigation, immigration, and employee benefits, serving clients across a wide range of industries nationwide.
- ⛰️New Hampshire State AGas reporting2026-01-23
Arthur Ashe Institute for Urban Health Inc. notified the New Hampshire Attorney General of a cyberattack occurring between April 4, 2025, and May 18, 2025. The incident involved unauthorized access to PII of 1 New Hampshire resident, including names, SSNs, driver's licenses, financial account info, and medical data. The organization detected the breach on September 22, 2025, implemented MFA, updated passwords, and provided 12 months of credit monitoring.
- ⛰️New Hampshire State AGas reporting2025-11-24
Anchorage Neighborhood Health Center (ANHC) notified the New Hampshire Attorney General of a criminal cyberattack affecting approximately 36 NH residents. Discovered on October 10, 2025, the incident involved unauthorized access to systems containing PII (names, DOB, SSN, driver's licenses) and PHI (medical treatment, health insurance). ANHC engaged third-party experts, deployed 24/7 EDR, rebuilt servers, and reset passwords. Affected individuals received credit monitoring via Experian.
- ⛰️New Hampshire State AGas reporting2025-11-13
American Israel Public Affairs Committee (AIPAC) notified the New Hampshire Attorney General of a cyberattack affecting one NH resident. Unauthorized access occurred between October 20, 2024, and February 6, 2025. AIPAC determined on August 28, 2025, that PII (names, SSNs, driver's licenses, financial/health data) was accessed. AIPAC engaged third-party experts, upgraded security controls, and provided 12 months of credit monitoring to the affected individual.
- ⛰️New Hampshire State AGas reporting2025-10-10
Space Coast Vascular notified the NH Attorney General of a criminal cyberattack affecting 8 NH residents. Discovered Aug 7, 2025. Data involved: names, DOB, SSN, driver's licenses, medical/insurance info, financial accounts. SCV secured systems, replaced firewalls, and offered 12 months credit monitoring.
- ⛰️New Hampshire State AGas reporting2025-09-09
Medical Associates of Brevard, LLC notified the New Hampshire Attorney General of a criminal cyberattack affecting 100 NH residents. Discovered July 7, 2025, the incident exposed PII including names, SSNs, driver's licenses, and PHI. MAB secured systems, replaced firewalls, and provided 12 months of credit monitoring.
- 🐻California State AGas victim2023-08-31
Jackson Lewis P.C. reported the theft of two hard drives from a locked storage room in one of its offices on January 7, 2022. The drives contained personal information of personnel and clients, including full names and other data. The firm determined on August 16, 2022, that personal information was stored on the stolen drives. The incident did not involve network intrusion. Jackson Lewis is offering complimentary credit monitoring services to affected individuals.
- ⛰️New Hampshire State AGas victim2023-03-20
Jackson Lewis P.C. filed a supplemental notice with the New Hampshire Attorney General regarding the theft of two hard drives containing names and SSNs of employees and clients. The drives were stolen on January 7, 2022. The firm detected the data storage on August 16, 2022, and identified affected individuals by November 19, 2022. 59 New Hampshire residents are affected. The firm engaged law enforcement and offered credit monitoring.
- 🍁Vermont State AGas victim2023-03-16
Jackson Lewis P.C. notified consumers that on January 7, 2022, two hard drives containing personal information (names, SSNs, DOBs) were stolen from a locked office storage room. The drives were unencrypted. The firm investigated, worked with law enforcement, and offered 12 months of Experian IdentityWorks. No evidence of misuse was found.
- 🐻California State AGas victim2023-03-16
Jackson Lewis P.C., a law firm, suffered a physical theft of two hard drives from a locked storage room in one of its offices on January 7, 2022. The drives contained personal information of personnel and a limited number of clients. Jackson Lewis investigated via security footage and access records, cooperated with law enforcement, and notified affected individuals. No network intrusion occurred. The firm offered 12 months of complimentary Experian IdentityWorks credit monitoring.
- 🦞Maine State AGas victim2023-03-16
Jackson Lewis PC reported a data breach involving the loss or theft of a device containing sensitive information. The incident occurred on January 7, 2022, but was not discovered until February 7, 2023. It affected 20,647 individuals, compromising their names and Social Security numbers. The firm began notifying affected individuals on March 16, 2023, and offered 12 months of identity protection services through Experian.
- 🐻California State AGas victim2023-02-17
Jackson Lewis P.C. reported the theft of two hard drives from a locked storage room in one of its offices on January 7, 2022. The drives contained confidential information of personnel and clients, including full names. The firm determined on August 16, 2022, that personal information was stored on the stolen drives. A review completed on November 19, 2022, identified affected individuals. Notices were sent between December 9 and December 20, 2022. The firm offered 12 months of complimentary credit monitoring via Experian IdentityWorks. No evidence of further misuse was found.
- CALIFORNIAHHS OCRas victim2023-02-17
Jackson Lewis P.C., a business associate (law firm), reported to HHS on 2023-02-17 a theft of two hard drives affecting 986 individuals. Breached information was located on other portable electronic devices and included names, dates of birth, SSNs, financial and claims information, health insurance information, diagnoses, and other treatment information. The BA notified HHS, affected individuals, the media, and provided substitute notice, free credit monitoring, and additional physical, administrative, and technical safeguards. OCR provided technical assistance.
- 🐻California State AGas victim2023-01-20
Jackson Lewis P.C. reported the theft of two hard drives from a locked storage room in one of its offices on January 7, 2022. The drives contained confidential information of personnel and clients, including full names. The firm determined on August 16, 2022, that personal information was stored on the stolen drives. A review completed on November 19, 2022, identified affected individuals. Notifications were sent between December 9 and December 20, 2022. The firm is offering 12 months of complimentary credit monitoring.
- 🦬Montana State AGas victim2023-01-20
Jackson Lewis PC reported a data breach to the Montana Attorney General. The breach was reported on 2023-01-20. The breach occurred on 1/7/2022. 202 Montana residents were affected.