Last Update: 09/22/2026 at 11:34 PM EST

Companies Report Sensitive Data Breaches

Coverage from Class Action U, Federman & Sherwood, and others

Companies Report Sensitive Data Breaches topic image

U.

S. companies across scientific, financial, legal, healthcare, and professional-services sectors are reporting incidents in which unauthorized parties may have accessed sensitive personal information. Exposed or potentially exposed data includes Social Security numbers, financial details, identity records, and health information, with some incidents linked to ransomware or threat-group claims. Regulatory notices, consumer warnings, and legal investigations are emerging as organizations continue to determine the scope and impact of the breaches.

History
08/05/20260 new articles

The story broadens to include additional named companies and threat groups, while sharpening from generic breach reporting into a mix of confirmed disclosures, alleged theft claims, and emerging legal/regulatory scrutiny. The current version also elevates the uncertainty around several incidents by explicitly noting unverified threat-actor claims and ongoing investigations.

08/04/20260 new articles

The story now centers more explicitly on named incidents and threat actors, adding specific ransomware claims and particular organizations alongside the broader breach pattern. It also broadens geographically and institutionally, while keeping the same core uncertainty around scope and exfiltration.

  • Securotrop and PLAY are named as separate threat groups.
  • ProDirectional disclosure affected at least 2,853 Texas residents.
  • Innovative Scientific Solutions exposed extensive medical and insurance information.
  • Geography now includes South Carolina and Washington, D.C.
  • Several notifications were issued months after underlying activity.
08/02/20266 new articles

The story has broadened from scattered U.S. breach notices into a denser Texas-and-Vermont-centered wave that now explicitly includes ransomware claims, social engineering, and accidental disclosure, along with more defined state notification channels and litigation activity. The updated version also places greater emphasis on unresolved attack methods and delayed disclosure timing as recurring limits on what can be confirmed.

  • Texas and Vermont filings are now the main disclosure channels.
  • Ransomware, social engineering, and accidental disclosure are newly explicit attack paths.
  • Some incidents occurred months before public notification.
  • WilmerHale now faces a federal class-action lawsuit.
  • Duplicate reports may be inflating the apparent number of cases.
07/23/20260 new articles

The story now centers more clearly on breach notifications from specific organizations and the emergence of legal and investigative responses, rather than just a broad pattern of exposed sensitive data. It also adds a new affected company, ProDirectional, and formalizes the role of state attorneys general in the disclosure process.

07/22/20261 new articles

The story has broadened from a mostly Texas/Vermont breach-notice pattern into a wider multi-sector U.S. data-breach cluster, with new incidents involving property management, financial advising, agriculture, and health-related services. The WilmerHale matter also stands out more clearly now as active litigation tied to an alleged legal-industry-targeted intrusion.

  • The incident set now includes property management, financial advising, agriculture, and insurance-related organizations.
  • FHT Advisors reported repeated access to an employee email account from June to September 2025.
  • Case & Associates Properties disclosed exposure affecting about 932 Texas residents.
  • Premier Select Sires disclosed exposure affecting 376 Vermont residents.
  • WilmerHale faces a federal lawsuit over alleged personal-information exposure.
07/17/202615 new articles

The story broadened from a general run of healthcare and service-sector breach investigations into a denser, more specific pattern centered on Texas and Vermont notices, with Federman & Sherwood repeatedly involved. It also added a notable litigation development: a federal class action against WilmerHale.

  • Frequent Vermont Attorney General notices tied to smaller-scope incidents.
  • One federal class-action lawsuit against WilmerHale.
  • Federman & Sherwood appears repeatedly as the investigating law firm.
  • Texas remains the most common breach-notification jurisdiction.
  • Sensitive data exposure now centers on Social Security numbers, account data, and medical records.
06/28/20263 new articles

The story broadens beyond the previously identified healthcare and legal-service breaches to include healthcare technology, mental health, and financial-services cases involving third-party access. Nebraska and federal health regulators also emerge alongside the recurring Texas reporting channel.

06/24/20263 new articles

The story has broadened from a single Innovative Scientific Solutions breach into a recurring pattern of disclosures across healthcare, imaging, consulting, and legal-service organizations. Repeated Texas filings and attorney investigations now frame the issue as a broader breach-notification and cybersecurity trend rather than an isolated incident.

06/18/2026Topic Formed

Innovative Scientific Solutions, LLC disclosed a data breach that may have exposed sensitive personal, financial, and health information. Public notices and law-firm investigations focus on the scope of the compromise, the number of affected individuals, and whether the company’s security safeguards were adequate. The material also suggests potential class action exposure tied to privacy and out-of-pocket harm.