McLane Company, Inc. notified the Maryland Attorney General of a data event involving its eServe payroll platform. An unauthorized actor exploited a vulnerability to access accounts between October 12 and November 22, 2024, modifying direct deposit info. Nine Maryland residents were affected, with data including names, SSNs, DOBs, and bank account numbers. McLane engaged forensic specialists, provided 12 months of credit monitoring via TransUnion, and implemented additional security measures.
Affected (this filing): 9