The Phia Group, LLC
ent_e964a7c7445e7600802e26be
Disclosures
9
State AG · 7 jurisdictions
Incidents
2
filings grouped by incident
Max affected reported
121,354
as filed · State AG TX
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- The Phia Group, LLC
- Normalized
- the phia— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (9)newest first
- 🍁Vermont State AGas victim2026-07-04
The Phia Group, LLC reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-07-04. The reporting organization type is Other Commercial. 989 Vermont residents were affected. Categories of data breached: Social Security Numbers, Financial Account Codes, Credit and Debit Account Info, Government ID Numbers.
- ⭐Texas State AGas victim2026-05-22
The Phia Group, LLC based in Canton, Massachusetts, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-12-01 and reported on 2026-05-22. 121,354 Texas residents were affected. 1,512,742 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Driver’s License number;Financial Information (e.g. account number, credit or debit card number);Medical Information;Health Insurance Information. Consumers were notified via Posted at company website or special website;U.S. Mail;Broadcast on Texas-wide Media.
- 🌴South Carolina State AGas victim2026-05-20
The Phia Group, LLC notified South Carolina AG of a data security incident affecting approximately 3,470 individuals. Suspicious activity was discovered on July 9, 2024, involving unauthorized access to personal information (names) between July 8-9, 2024. The company engaged forensic specialists, reported to law enforcement, and provided 12 months of identity monitoring via Kroll.
- 🐻California State AGas victim2026-05-15
The Phia Group, LLC experienced a data security incident involving ransomware that disrupted network operability. Suspicious activity was discovered on July 9, 2024, with data potentially acquired between July 8 and July 9, 2024. Affected data includes names and health-related information. The company engaged forensic specialists, secured the environment, and offered credit monitoring services.
- ⛰️New Hampshire State AGas victim2026-05-14
The Phia Group, LLC, a healthcare cost containment provider, issued a supplemental notice to the New Hampshire Attorney General regarding a July 2024 security incident. Suspicious activity disrupted network operability, and data was potentially acquired between July 8-9, 2024. The incident affected 1,433 New Hampshire residents, exposing SSNs, driver's license numbers, and financial account information. Phia engaged forensic specialists, reported to law enforcement, and provided credit monitoring via Kroll. Notifications to residents occurred between January and April 2026.
- 🦫Oregon State AGas victim2026-02-07
The Phia Group, LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2026-02-07. The breach occurred during 12/1/2025. The breach was discovered on 12/1/2025. 40,366 individuals were affected. Notice was sent on 12/4/2025.
- 🐻California State AGas victim2026-01-30
The Phia Group, LLC notified California residents of a data security incident discovered on July 9, 2024. Unauthorized access occurred between July 8 and July 9, 2024, potentially exposing names and health-related information. The company engaged forensic specialists, secured systems, and offered credit monitoring services.
- 🌲Washington State AGas victim2026-01-30
The Phia Group, a business sector entity reported a unauthorized access incident to the Washington Attorney General. The organization became aware of the incident on 2024-07-08 and filed notice on 2026-01-30. 2,802 Washington residents were affected. 571 days elapsed between awareness and notification. 0 days to identify the breach. 1 days to contain the breach.
- ⛰️New Hampshire State AGas victim2026-01-30
The Phia Group, LLC, a healthcare cost containment provider, notified the New Hampshire Attorney General of a data security incident affecting 13 NH residents. Suspicious activity was detected on July 9, 2024, involving unauthorized access to personal information, including Social Security Numbers, between July 8-9, 2024. The company engaged forensic specialists, reported to law enforcement, and provided credit monitoring services to affected individuals. No evidence of fraudulent misuse was found.