Conference USA
ent_daa8db9e9f9c4bf2
Disclosures
9
State AG · Leak Site · 7 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
1,459
nationwide · State AG TX
Leak-site claims
3
unverified actor claims
Identity resolution
- Canonical name
- Conference USA
- Normalized
- conference usa— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- conferenceusa.com
Disclosure history (9)newest first
- New Hampshire State AGas victim2025-09-15
Conference USA, a collegiate athletic conference, notified the NH Attorney General of an incident where an unauthorized actor gained limited access to its network on June 22, 2024. The organization discovered the access on the same date but confirmed on August 20, 2025, that personal information (full name and Social Security number) of one New Hampshire resident was potentially accessed. Notifications were sent on September 9, 2025. The organization engaged external cybersecurity professionals, enhanced security measures, and offered 12 months of credit monitoring to the affected individual.
- Texas State AGas victim2025-09-10
Conference USA based in Coppell, Texas, a nonprofit organization entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-08-20 and reported on 2025-09-10. 378 Texas residents were affected. 1,459 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Driver’s License number;Financial Information (e.g. account number, credit or debit card number);Medical Information;Health Insurance Information;Date of Birth. Consumers were notified via U.S. Mail.
- Massachusetts State AGas victim2025-09-10
Conference USA reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2025-09-10. 13 Massachusetts residents were affected.
- Indiana State AGas victim2025-09-09
Conference USA reported a data breach to the Indiana Attorney General. The breach occurred on 2024-06-22 and was reported on 2025-09-09. 12 Indiana residents were affected. 1,459 individuals affected in total.
- Maine State AGas victim2025-09-09
Conference USA reported an external system breach (hacking) on June 22, 2024, discovered on August 20, 2025. 1,459 individuals were affected, including 1 Maine resident. The incident involved unauthorized access to files containing personal names. Conference USA engaged external cybersecurity professionals and is offering 12 months of identity theft protection services through IDX.
- Nebraska State AGas victim2025-09-09
Conference USA notified Nebraska AG of a data breach occurring on June 22, 2024, discovered via forensic investigation on August 20, 2025. Unauthorized access resulted in potential exposure of full names. The organization offered IDX identity theft protection services and enhanced network security safeguards. No identity fraud reports were known at the time of notification.
- GLOBALLeak Siteas victim2024-06-27
conferenceusa.com 1Tb uncompressed data
- GLOBALLeak Siteas victim2024-06-22
conferenceusa.com 1Tb uncompressed data
- GLOBALLeak Siteas victim2021-09-09