Lgaa LLC
ent_c23826af90777a35246a8085
Disclosures
12
State AG · 8 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
11,837
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Lgaa LLC
- Normalized
- lgaa— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (12)newest first
- Indiana State AGas victim2025-11-07
LGAA LLC reported a data breach to the Indiana Attorney General. The breach occurred on 2025-02-20 and was reported on 2025-11-07. 25 Indiana residents were affected. 10,850 individuals affected in total.
- California State AGas victim2025-11-07
LGAA LLC notified the California Attorney General of a data breach occurring on February 20, 2025. An unknown cyber actor accessed a limited portion of LGAA's network used for data migrations and may have copied files containing names. LGAA remediated the activity, investigated, and deleted the affected data. Affected individuals are being offered 12 months of complimentary identity monitoring services.
- Nebraska State AGas victim2025-11-07
LGAA LLC reported a cybersecurity incident to the Nebraska Attorney General affecting approximately 6 Nebraska residents. On February 20, 2025, an unknown cyber actor accessed a limited portion of LGAA's network used for data migrations and may have copied files containing names, driver's license/state ID numbers, and credit/debit card numbers. LGAA notified residents on November 7, 2025, offering 12 months of complimentary identity monitoring through TransUnion/Cyberscout.
- Massachusetts State AGas victim2025-11-07
LGAA LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2025-11-07. 21 Massachusetts residents were affected.
- New Hampshire State AGas victim2025-11-07
LGAA LLC notified the NH Attorney General that an unknown cyber actor accessed a limited portion of its network used for data migrations on February 20, 2025, and may have copied files. The incident affected approximately 6 New Hampshire residents. Compromised data included names, Social Security numbers, driver's license/state ID numbers, and credit/debit card numbers. LGAA secured the network, removed the data, and is providing 12 months of identity monitoring via TransUnion.
- Montana State AGas victim2025-11-07
LGAA LLC notified affected individuals in Montana and other states that an unknown cyber actor accessed a limited segment of its computer network on February 20, 2025, potentially copying files containing names. LGAA remediated the access, investigated, and is offering 12 months of complimentary credit monitoring. The incident involved customer data (identity_basic) and is currently contained.
- Maine State AGas victim2025-11-07
LGAA LLC reported an external system breach on February 20, 2025, affecting 3 Maine residents. The incident involved unauthorized access to a temporary network segment used for data migrations. Compromised data included names, driver's license numbers, and credit/debit card numbers. LGAA discovered the scope on October 27, 2025, and notified residents on November 7, 2025, offering 12 months of TransUnion identity monitoring.
- Maine State AGas victim2022-03-01
An external hacking incident at LGAA, LLC, which occurred between February 16, 2021, and March 18, 2021, resulted in a data breach affecting names and Social Security numbers. The breach was discovered on December 13, 2021. Nineteen Maine residents were among those affected. Consumers were notified on March 1, 2022, and offered 12 months of credit monitoring and identity restoration services from IDX.
- Massachusetts State AGas victim2022-03-01
LGAA, LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2022-03-01. 6 Massachusetts residents were affected. The report records the breach type as electronic.
- Indiana State AGas victim2022-03-01
LGAA, LLC reported a data breach to the Indiana Attorney General. The breach occurred on 2021-02-16 and was reported on 2022-03-01. 5 Indiana residents were affected. 11,837 individuals affected in total.
- Oregon State AGas victim2022-03-01
LGAA, LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2022-03-01. The breach occurred during 2/16/2021 - 3/18/2021. The breach was discovered on 12/13/2021. 11,837 individuals were affected. Notice was sent on 3/1/2022.
- Montana State AGas victim2022-03-01
LGAA, LLC notified Montana regulators of unauthorized access to data center systems between Feb 16 and Mar 18, 2021, exploiting a Microsoft Exchange zero-day vulnerability. The incident affected 11 Montana residents, exposing names, SSNs, medical info, financial accounts, and driver's licenses. LGAA engaged forensic specialists, secured systems, and offered one year of credit monitoring.