Monro, Inc.
ent_8d4dee4b60683ea286fc85b5
Disclosures
7
State AG · 7 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
112,458
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Monro, Inc.
- Normalized
- monro— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (7)newest first
- 🍁Vermont State AGas victim2025-03-25
Monro, Inc. disclosed a security incident in late 2024 involving unauthorized access to an employee's email mailbox. The attacker accessed personal information including names, Social Security numbers, addresses, dates of birth, and some employee health data. Monro notified affected individuals in multiple states, including Vermont and Rhode Island, and offered 12 months of credit monitoring via Experian IdentityWorks.
- 🦞Maine State AGas victim2025-03-25
Monro, Inc. reported a data breach to the Maine Attorney General, stating that an external system breach (hacking) occurred on November 21, 2024. The breach was discovered on November 29, 2024, and affected 1,434 Maine residents. The company began notifying affected individuals on March 21, 2025, and offered them 12 months of identity theft protection services through Experian IdentityWorks.
- ⛰️New Hampshire State AGas victim2025-03-24
Monro, Inc. notified the New Hampshire Attorney General of a security incident discovered on November 29, 2024, involving unauthorized access to an employee's email mailbox. The incident likely resulted in the exposure of personal information for approximately 2,643 New Hampshire residents. Monro engaged law enforcement, reset credentials, and is offering 12 months of Experian IdentityWorks services to affected individuals.
- 🏎️Indiana State AGas victim2025-03-21
Monro Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2024-11-21 and was reported on 2025-03-21. 4,406 Indiana residents were affected. 112,458 individuals affected in total.
- 💎Delaware State AGas victim2025-03-21
Monro, Inc. notified affected individuals in multiple states (including Delaware and Rhode Island) of a security incident in late 2024 involving unauthorized access to an employee's email account. The breach exposed names, Social Security numbers, dates of birth, and employee health/accident history. Approximately 975 Rhode Island residents were specifically identified. Monro offered 12 months of credit monitoring via Experian.
- 🐻California State AGas victim2025-03-21
Monro, Inc. notified the California Attorney General of a security incident involving unauthorized access to an employee's electronic mailbox in late November 2024. The breach potentially exposed personal information including names, Social Security numbers, addresses, dates of birth, ID numbers, and certain health information (accident history) of employees. Monro changed passwords, modified email controls, and provided 12 months of Experian IdentityWorks to affected individuals.
- 🦀Maryland State AGas victim2025-03-20
Monro, Inc. notified the Maryland AG of a security incident discovered on November 29, 2024, involving unauthorized access to an employee's email mailbox. The incident affected approximately 8,329 Maryland residents, exposing names, SSNs, addresses, DOBs, ID numbers, and employee health information (accident history). Monro engaged law enforcement, reset credentials, and offered 12 months of Experian IdentityWorks.