Morning Star Tours
ent_63e93cb36c25ffe609ca5eec
Disclosures
7
State AG · Leak Site · 7 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
18,997
nationwide · State AG TX
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- Morning Star Tours
- Normalized
- morning star travel— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- morningstartravel.org
Disclosure history (7)newest first
- New Hampshire State AGas reporting2026-06-01
Morning Star Tours experienced a data security incident between April 22-23, 2026, involving the compromise of servers maintained by a third-party MSP. The incident potentially affected the names, dates of birth, and passport information of 17 New Hampshire residents. The company reported the incident to law enforcement, engaged cybersecurity counsel, and implemented remediation measures including organization-wide MFA and password resets. Notification letters were mailed on June 1, 2026.
- Texas State AGas reporting2026-06-01
Morning Star Tours based in Dallas, Texas, a business – retail or merchant entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-04-30 and reported on 2026-06-01. 8,651 Texas residents were affected. 18,997 individuals affected in total. Types of information involved: Name of individual;Social Security Number Information;Government-issued ID number (e.g. passport, state ID card);Date of Birth. Consumers were notified via U.S. Mail.
- Vermont State AGas reporting2026-06-01
Morning Star Tours reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-06-01. The reporting organization type is Other Commercial. 63 Vermont residents were affected. Categories of data breached: Government ID Numbers.
- Washington State AGas reporting2026-05-31
Morning Star Tours, a business sector entity reported a ransomware incident to the Washington Attorney General. The organization became aware of the incident on 2026-04-22 and filed notice on 2026-05-31. 500 Washington residents were affected. 39 days elapsed between awareness and notification. 0 days to identify the breach. 8 days to contain the breach.
- Oregon State AGas reporting2026-05-31
Morning Star Tours reported a data breach to the Oregon Attorney General. The breach was reported on 2026-05-31. The breach occurred during 4/22/2026 - 4/23/2026. The breach was discovered on 4/30/2026. 18,997 individuals were affected. Notice was sent on 6/1/2026.
- California State AGas reporting2026-05-31
Morning Star Tours experienced a data security incident involving infrastructure managed by a third-party technology provider. The incident occurred between April 24 and April 30, 2026, and was discovered on April 30, 2026. Personal information, including names and other data, may have been inadvertently exposed. The company engaged forensic investigators, notified law enforcement, and is offering identity theft protection services to affected individuals.
- GLOBALLeak Siteas victim2026-04-30
Journeys that can change lives