Monro, Inc.
ent_8d4dee4b60683ea286fc85b5
Disclosures
12
State AG · 11 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
112,458
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Monro, Inc.
- Normalized
- monro— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- 0000876427
- Domain
- None on record
Disclosure history (12)newest first
- Rhode Island State AGas victim2025-03-27
Monro, Inc. notified the Rhode Island Attorney General of a security incident involving unauthorized access to an employee's email account. The breach, discovered on November 29, 2024, affected approximately 975 Rhode Island residents, exposing names, SSNs, addresses, DOBs, ID numbers, financial data, and health information. Monro offered 12 months of credit monitoring.
- South Carolina State AGas victim2025-03-26
Monro, Inc. notified South Carolina regulators of a security incident in late 2024 involving unauthorized access to an employee's email mailbox. The incident, likely stemming from phishing, exposed names, SSNs, DOBs, and some employee health data. Monro is offering 12 months of credit monitoring. A specific count of 975 affected individuals was noted for Rhode Island residents.
- Vermont State AGas victim2025-03-25
Monro, Inc. notified consumers of a security incident in late 2024 where an unauthorized actor accessed an employee's mailbox. The incident, occurring in late November 2024, potentially exposed personal information including names, Social Security numbers, addresses, dates of birth, ID numbers, and certain health information (accident history) for employees. Monro changed passwords, modified email controls, and is offering 12 months of Experian IdentityWorks. Approximately 975 Rhode Island residents were affected.
- Massachusetts State AGas victim2025-03-25
Monro, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2025-03-25. 5,026 Massachusetts residents were affected.
- Maine State AGas victim2025-03-25
Monro, Inc. reported an external system breach (hacking) affecting 112,458 individuals, including 1,434 Maine residents. The incident involved unauthorized access to an employee's email account, exposing names, SSNs, DOBs, and some health information. Breach occurred Nov 21, 2024; discovered Nov 29, 2024. Notifications sent March 21, 2025, offering 12 months of credit monitoring.
- New Hampshire State AGas victim2025-03-24
Monro, Inc. notified the NH Attorney General of a security incident where an unauthorized actor accessed an employee's electronic mailbox in late November 2024. The company became aware of suspicious activity on November 29, 2024. An investigation confirmed access and potential acquisition of personal information. Approximately 2,643 New Hampshire residents were affected. Monro changed passwords, modified email controls, increased user training, and notified law enforcement. Complimentary Experian IdentityWorks services are being offered.
- Indiana State AGas victim2025-03-21
Monro Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2024-11-21 and was reported on 2025-03-21. 4,406 Indiana residents were affected. 112,458 individuals affected in total.
- Delaware State AGas victim2025-03-21
Monro, Inc. experienced a security incident in late 2024 where an unauthorized actor accessed an employee's electronic mailbox. The incident involved potential access to personal information including names, social security numbers, addresses, dates of birth, ID numbers, and certain health information (accident history). The company investigated the incident, changed passwords, modified email controls, and is offering 12 months of complimentary identity monitoring services.
- California State AGas victim2025-03-21
Monro, Inc. notified the California Attorney General of a security incident involving unauthorized access to an employee's electronic mailbox in late November 2024. The breach potentially exposed personal information including names, Social Security numbers, addresses, dates of birth, ID numbers, and certain health information (accident history) of employees. Monro changed passwords, modified email controls, and provided 12 months of Experian IdentityWorks to affected individuals.
- Maryland State AGas victim2025-03-20
Monro, Inc. notified the Maryland Attorney General of a security incident where an unauthorized actor accessed an employee's electronic mailbox in late November 2024. The breach exposed personal information of approximately 8,329 Maryland residents, including names, social security numbers, addresses, dates of birth, ID numbers, and certain health information such as accident history. Monro responded by changing passwords, modifying email controls, increasing user training, and notifying law enforcement. The company is offering 12 months of complimentary Experian IdentityWorks services to affected individuals.
- Illinois State AGas victim2025-03-01
MONRO, INC filed a data-breach notice with the Illinois Attorney General in March 2025 (case 25-03-040). The register records the breach as discovered on November 29, 2024. Personal information types reported: drivers license, medical information, ssn. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Massachusetts State AGas victim2011-10-24
Monro Muffler Brake, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2011-10-24. 75 Massachusetts residents were affected. The report records the breach type as electronic.