H2O.ai notified the Maryland Attorney General that a financially motivated threat actor accessed H2O systems between December 20, 2024, and January 29, 2025. The incident affected 12 Maryland residents, exposing payroll, SSNs, driver's license numbers, and addresses. H2O retained cybersecurity firms, reported to law enforcement, took the environment offline, and implemented enhanced monitoring.
Affected (this filing): 12