Ernst & Young LLP Reports March 2026 Data Breach in California
Ernst & Young LLP has reported a data incident that occurred on March 28, 2026, affecting individuals in California. The specifics of the breach type and the exact personal information involved are currently under investigation, as detailed in public filings dated July 15, 2026. Those potentially affected should remain vigilant for any unusual activity and review guidance on identity protection.
- State
- CA
- Breach date
- March 28, 2026
- Reported
- July 15, 2026
Ernst & Young LLP, operating in California, filed notice regarding a data security incident that took place on March 28, 2026. This filing, submitted to regulators on July 15, 2026, indicates that an unauthorized event led to the compromise of certain systems.
At present, the precise nature of how this breach occurred remains unspecified in the available public records. Similarly, the specific categories of personal information that may have been exposed have not been detailed. The company has indicated that the incident is currently under investigation, which suggests that further details may become available as the inquiry progresses.
Individuals who receive direct notification from Ernst & Young LLP should carefully review that communication for any additional context specific to their situation. Since the full scope of the information involved is still being determined, general precautions are advisable for all potentially affected parties.
It is recommended that individuals maintain heightened vigilance over their financial and personal accounts. Regularly review statements for any suspicious transactions or activities that you do not recognize. Consider placing a fraud alert or security freeze on your credit reports with the three major credit bureaus (Equifax, Experian, TransUnion) as a precautionary measure.
Additionally, be cautious of unsolicited communications, especially those requesting personal information. Phishing attempts often follow data breaches, so verify the legitimacy of any requests before responding. Updating passwords for online accounts to strong, unique combinations can also help mitigate risks associated with data exposure.
Source: CA Attorney General filing