Charles Schwab & Co., Inc. notified clients of unusual login activity beginning on or after March 25, 2016. The incident involved credential stuffing, where attackers used usernames and passwords obtained from non-Schwab sites to access Schwab accounts. Affected data included names, account numbers, positions, and transaction history. Schwab restricted access and monitored accounts.