Menu
Browse

Cyber Incident Victim: USA DeBusk LLC

Date

Sep 2025

Location

United States of America

Status

Unknown

Updated

2026-08-19 07:21

Timeline
Occurred
Sep 2025
Discovered
Jul 2026
Disclosed
Aug 2026
Resolved
Pending
Summary

USA DeBusk LLC experienced a cybersecurity incident involving unauthorized access to its systems that resulted in the exposure of personal information such as names, contact details, dates of birth, government‑issued identification numbers, financial account data, medical and health information, health insurance information, and usernames and passwords. After detecting the breach, the company launched an investigation with external cybersecurity experts, blocked the unauthorized party’s access, reported the incident to law enforcement, and began notifying affected individuals while offering two years of complimentary identity monitoring through Kroll. Edelson Lechtzin LLP is conducting a free, confidential case evaluation for individuals who received a breach notice and is investigating potential class action claims related to the exposure.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 0 motives 0 techniques
Threat Actors Type Location
0 actors Available to members Available to members

Description

On or around September 5, 2025, USA DeBusk LLC experienced a cybersecurity incident involving unauthorized access to certain of its systems. After learning of the issue, the company launched an investigation with the assistance of leading external cybersecurity experts. The investigation led to the blocking of the unauthorized party's access and the implementation of additional safeguards. USA DeBusk also reported the incident to law enforcement authorities. On July 6, 2026, the company determined that an unauthorized third party had obtained personal information from its systems and began notifying affected individuals.

Cyber Incident Image

The information that was exposed varied by individual and could include name and contact information, date of birth, government-issued identification numbers such as Social Security numbers, driver's license numbers, or passport numbers, financial account information including bank account or payment card numbers, medical and health-related information, health insurance information, and usernames and passwords. The exposure of Social Security numbers, financial account data, and health information together creates a heightened risk of identity theft, financial fraud, and medical identity theft. Individuals who received a data breach notification from USA DeBusk LLC were informed of the potential increased risk. USA DeBusk is providing two years of complimentary identity monitoring through Kroll, which includes credit monitoring, fraud consultation, and identity theft restoration services. Edelson Lechtzin LLP, a national class action law firm, is investigating potential legal claims arising from the breach and is offering free, confidential case evaluations to those affected.

In response to the incident, USA DeBusk engaged external cybersecurity experts to conduct a thorough forensic analysis. The company took steps to secure its systems by blocking the unauthorized party's continued access and by strengthening its security safeguards. Law enforcement was notified as part of the company's reporting obligations. To assist affected individuals, USA DeBusk arranged for the complimentary identity monitoring service through Kroll and provided enrollment instructions. The ongoing investigation by Edelson Lechtzin LLP aims to determine whether a class action lawsuit is warranted and to advise affected persons of their legal options.

Sources
Sources available to members
1 source