Young Life Store
ent_8bae1998e5911fdaffef0c76
Disclosures
10
State AG · 9 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
51,226
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Young Life Store
- Normalized
- young life store— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- younglifestore.com
Disclosure history (10)newest first
- Massachusetts State AGas victim2024-12-13
Young Life reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2024-12-13. 150 Massachusetts residents were affected.
- Vermont State AGas victim2024-12-12
Young Life notified consumers of a security incident occurring June 13-14, 2024, where malware infected its network and an unauthorized actor accessed files containing PII of employees, dependents, and volunteers. Young Life engaged law enforcement, offered credit monitoring, and is reviewing security policies. No identity theft evidence found. Specific data types obscured in redacted notice, but PII and government IDs implied. Vermont AG notice filed Dec 12, 2024.
- Maine State AGas victim2024-12-12
Young Life, a non-profit organization, disclosed a cybersecurity incident where an unauthorized actor accessed systems containing PII of employees, dependents, and volunteers between June 13-14, 2024. The breach was discovered on June 14, 2024. Data types included names, SSNs, and financial/payment card info. 51,226 individuals were affected, including 34 Maine residents. Notices were sent on December 12, 2024, offering 12 months of credit monitoring.
- Montana State AGas victim2024-12-12
Young Life notified Montana AG of a security incident discovered June 14, 2024. Malware infected the network between June 13-14, 2024, potentially exposing employee, dependent, and volunteer data including SSNs and DOBs. Law enforcement was notified. Credit monitoring offered.
- New Hampshire State AGas victim2024-12-12
Young Life notified the New Hampshire Attorney General of a data event affecting 53 NH residents. Suspicious activity was detected on June 14, 2024, revealing malware infection and unauthorized access to employee/dependent systems between June 13-14, 2024. Young Life notified law enforcement and offered credit monitoring via Cyberscout.
- Washington State AGas victim2024-12-12
Supplemental notice to Washington AG regarding Young Life's June 2024 ransomware incident affecting employee/dependent data (SSN, DL, financial, medical). 3,652 WA residents notified. Incident contained; law enforcement notified; credit monitoring offered.
- California State AGas victim2024-12-12
Young Life reported a security incident where malware infected its network between June 13-14, 2024. An unauthorized actor may have accessed files containing information of current/former employees, dependents, and volunteers. The organization launched an investigation, confirmed system security, notified affected individuals and law enforcement, and is offering credit monitoring services.
- Oregon State AGas victim2024-12-12
Young Life reported a data breach to the Oregon Attorney General. The breach was reported on 2024-12-12. 51,226 individuals were affected.
- Illinois State AGas victim2024-12-01
YOUNG LIFE filed a data-breach notice with the Illinois Attorney General in December 2024 (case 24-12-017). The register records the breach as discovered on June 13, 2024. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Oregon State AGas victim2021-09-29
Young Life reported a data breach to the Oregon Attorney General. The breach was reported on 2021-09-29. The breach occurred during 8/30/2021 - 8/30/2021. The breach was discovered on 8/30/2021. 1,121 individuals were affected. Notice was sent on 9/29/2021.