Case directory
Find the breach named in your letter
Each case links to a plain-English explanation of what was exposed and the steps that matter. If you see the company from your notification letter, start there.
9 cases
- monitoringUnauthorized Access
Fidelity Investments
A 2024 incident used two customer accounts to access documents with other customers' personal data, including SSNs. Here is your guidance.
MA77K affectedRead guide - monitoringUnauthorized Disclosure
Kaiser Foundation Health Plan
A 2024 disclosure involved member web activity being shared with third-party vendors. Here is what was involved and how concerned to be.
CA13.4M affectedRead guide - activeRansomware
Evolve Bank & Trust
A 2024 ransomware attack published customer and fintech-partner data including bank account and Social Security numbers. Learn your next steps.
TN7.6M affectedRead guide - activeUnauthorized Access
Advance Auto Parts
A 2024 cloud-environment breach exposed names, Social Security numbers, and driver license numbers of applicants and employees. Here is what to do.
NC2.3M affectedRead guide - monitoringUnauthorized Access
Dell Technologies
A 2024 portal-scraping incident exposed Dell customer names, addresses, and order details. Here is a plain-English look at the risk.
TX49M affectedRead guide - activeData Leak
AT&T
Customer records including Social Security numbers surfaced online in 2024, affecting current and former AT&T customers. Learn what your letter means.
TX73M affectedRead guide - activeUnauthorized Access
Ticketmaster Entertainment
A 2024 breach of a Ticketmaster cloud database exposed names, contact details, and partial payment card data. If you bought tickets, here is how to respond.
CA560M affectedRead guide - activeRansomware
Change Healthcare
If you got a letter from Change Healthcare, your Social Security number and medical records may have been exposed in the February 2024 ransomware attack. Here is what to do next.
MN190M affectedRead guide - investigating
OneBlood, Inc
OneBlood, Inc. recently reported a data security incident on January 9, 2025, impacting individuals in South Carolina. If you received a notification, it means your personal information may have been exposed, which could lead to various risks. Understanding your options and acting quickly is important to protect yourself.
SCRead guide