Luxottica of America Inc.
ent_8390699d8e35bcf29ea61f64
Disclosures
5
State AG · HHS OCR · 5 jurisdictions
Incidents
2
filings grouped by incident
Max affected reported
829,454
as filed · HHS OCR OH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Luxottica of America Inc.
- Normalized
- luxottica of america— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- ⛰️New Hampshire State AGas victim2026-04-08
Luxottica of America, Inc. notified the New Hampshire Attorney General of a data incident affecting one NH resident. An unauthorized individual accessed employee ADP payroll accounts between Feb 6-12, 2026, altering direct deposit info. Luxottica reset passwords, blocked access, reported to law enforcement, and offered 2 years of credit monitoring. Data involved: name and bank account/routing numbers.
- 🏎️Indiana State AGas victim2026-04-08
Luxottica of America Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2026-02-06 and was reported on 2026-04-08. 4 Indiana residents were affected. 108 individuals affected in total.
- 🦫Oregon State AGas victim2020-12-02
Luxottica of America Inc reported a data breach to the Oregon Attorney General. The breach was reported on 2020-12-02. The breach occurred during 8/5/2020 - 8/9/2020. The breach was discovered on 8/9/2020. Notice was sent on 9/28/202010/27/2020.
- 🌲Washington State AGas victim2020-10-27
Luxottica of America Inc., a business sector entity reported a unclear/unknown incident to the Washington Attorney General. The organization became aware of the incident on 2020-08-28 and filed notice on 2020-10-27. 12,166 Washington residents were affected. 60 days elapsed between awareness and notification. 19 days to identify the breach. 0 days to contain the breach.
- OHHHS OCRas victim2020-10-27
Luxottica of America Inc. (OH) reported to HHS on 2020-10-27 a Hacking/IT Incident (cyber-attack on a Network Server) affecting 829,454 individuals. Compromised PHI included names, addresses, dates of birth, Social Security numbers, diagnoses, conditions, medications prescribed, claims and financial information, and other treatment information. The BA notified HHS, affected individuals, and the media, and offered complimentary credit monitoring. Additional technical safeguards were implemented; OCR provided HIPAA Security Rule technical assistance.