RCI Internet Services
ent_e83ce5084a031b7e42792a27
Disclosures
7
State AG · SEC 8-K · 7 jurisdictions
Incidents
2
filings grouped by incident
Max affected reported
40,178
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- RCI Internet Services
- Normalized
- rci internet— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (7)newest first
- 🍁Vermont State AGas victim2026-06-12
RCI Internet Services, Inc. reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-06-12. The reporting organization type is Other Commercial. 6 Vermont residents were affected. Categories of data breached: Social Security Numbers, Government ID Numbers.
- 🦞Maine State AGas victim2026-06-02
RCI Internet Services, Inc. reported an external system breach (hacking) occurring on March 19, 2026, discovered on May 13, 2026. The incident affected approximately 40,178 individuals, including 257 Maine residents. The breach involved the acquisition of personal identifiers, including government IDs. RCI provided written notification and offered 12 months of credit monitoring and identity theft protection services through IDX.
- ⛰️New Hampshire State AGas victim2026-06-01
RCI Internet Services, Inc. notified the New Hampshire Attorney General of a data event affecting approximately 46 NH residents. Unauthorized access occurred on March 19, 2026, exposing names, SSNs, driver's license numbers, and passport numbers. RCI engaged cybersecurity experts, notified federal law enforcement, and provided 12 months of credit monitoring via IDX.
- ⭐Texas State AGas victim2026-06-01
RCI Internet Services based in Houston, Texas, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-05-13 and reported on 2026-06-01. 15,553 Texas residents were affected. 40,178 individuals affected in total. Types of information involved: Name of individual;Social Security Number Information;Driver’s License number. Consumers were notified via U.S. Mail.
- 🐻California State AGas victim2026-05-29
RCI Internet Services, Inc. notified the California Attorney General of a data security incident. On March 23, 2026, the company became aware of a network disruption. Investigation revealed that certain files were accessed and acquired without authorization on March 19, 2026. Affected data may include names, Social Security numbers, driver's license numbers, and passport numbers. The company engaged cybersecurity experts, notified the FBI, and is offering identity protection services to affected individuals.
- 🏎️Indiana State AGas victim2026-05-28
RCI Internet Services Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2026-03-19 and was reported on 2026-05-28. 760 Indiana residents were affected. 40,178 individuals affected in total.
- FEDERALSEC 8-Kas victim2026-04-13
RCI Internet Services, Inc., a subsidiary of RCI Hospitality Holdings, Inc., disclosed a cybersecurity incident occurring March 19-23, 2026. An unauthorized actor exploited an insecure direct object reference (IDOR) vulnerability on the company's Internet Information Services (IIS) web server. The incident resulted in the unauthorized access of independent contractors' personal information, including names, contact details, dates of birth, Social Security numbers, and driver's license numbers. The company engaged third-party cybersecurity firms, enhanced security posture by expanding multifactor authentication, and disabled external access to the IIS. No customer or financial system data was accessed.