Fora Financial
ent_b5b2716c5c35eeef090f5fe5
Disclosures
9
State AG · 6 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
3,270
nationwide · State AG NH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Fora Financial
- Normalized
- fora financial— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- forafinancial.com
Disclosure history (9)newest first
- New Hampshire State AGas victim2024-01-18
Fora Financial LLC reported a security breach where unauthorized third parties obtained deal-related personal information submitted in commercial financing applications. The incident was discovered on September 9, 2022. Approximately 3,270 individuals were affected, including 14 New Hampshire residents. Fora Financial terminated the compromise and provided credit monitoring services to affected individuals.
- Maine State AGas victim2024-01-18
Fora Financial LLC reported a data breach affecting 3,270 individuals. The breach, which occurred on September 9, 2022, and was discovered on February 27, 2023, was described as an external system breach or hacking incident. The compromised information included names and Social Security numbers. In response, Fora Financial provided written notifications to the affected individuals on March 29, 2023, and offered 12 months of complimentary credit monitoring, fraud consultation, and identity theft restoration services through Kroll.
- Montana State AGas victim2023-03-29
Fora Financial LLC notified Montana residents of a data breach discovered on September 9, 2022. Competitors exploited a vulnerability in Fora's information systems to obtain deal-related information, including names, dates of birth, and Social Security numbers. The incident is ongoing; competitors used data for competitive purposes. Fora terminated the compromise and offers 12 months of identity monitoring.
- Indiana State AGas victim2023-03-29
Fora Financial LLC reported a data breach to the Indiana Attorney General. The breach occurred on 2022-09-09 and was reported on 2023-03-29. 31 Indiana residents were affected. 2,356 individuals affected in total.
- New Hampshire State AGas victim2023-03-29
Fora Financial LLC notified the New Hampshire Attorney General of a security incident affecting 11 NH residents. On or about September 9, 2022, unauthorized third parties obtained deal-related information via an exploit in Fora's information systems. The data included personal and business financial information. The investigation was ongoing as of March 29, 2023. Credit monitoring was offered.
- Vermont State AGas victim2023-03-29
Fora Financial LLC notified consumers that unauthorized third parties, identified as competitors, obtained deal-related information including names, dates of birth, and Social Security numbers via an exploit in Fora's information systems. The incident was discovered on September 9, 2022, and the source was terminated on February 19, 2023. The investigation is ongoing. Fora is providing 12 months of identity monitoring services.
- Massachusetts State AGas victim2023-03-29
Fora Financial LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-03-29. 34 Massachusetts residents were affected. The report records the breach type as electronic.
- Maine State AGas victim2023-03-29
Fora Financial LLC, a financial services company, experienced an external system breach on September 9, 2022, which was discovered on February 27, 2023. The breach impacted 3 Maine residents, compromising their names and Social Security numbers. In response, the company offered 12 months of credit monitoring, fraud consultation, and identity theft restoration services through Kroll.
- Massachusetts State AGas victim2017-08-18
Fora Financial LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2017-08-18. 1 Massachusetts residents were affected. The report records the breach type as electronic.