Baillie Lumber Data Breach: 52 GB of Sensitive Data Stolen

Published
August 2, 2025
Updated
August 2, 2025
Baillie Lumber Data Breach: 52 GB of Sensitive Data Stolen
Baillie Lumber
Types of INFORMATION affected
  • Names
    Names
  • Social security numbers
    Social Security Numbers
  • Dates of birth
    Dates of Birth
  • Addresses
    Addresses
  • Government IDs
    Government IDs
  • Medical Information
    Medical Info
  • Financial Info
    Financial Info

Affected by the

Baillie Lumber

data breach?

Join the Lawsuit

It's free to join. 

Banner advertisement for ExpressVPN to take control of your online security

Claim Depot may receieve a commission from links on this page

On Feb. 11, 2025, Baillie Lumber Co. discovered suspicious activity within its network. An investigation revealed that an unauthorized actor had accessed certain files between Feb. 6 and Feb. 12, 2025, and may have copied them.

This breach was later attributed to the Cactus ransomware group, which claimed responsibility and posted about the attack on its dark web portal on March 12, 2025. The group asserted it had obtained 52 GB of data, including personal identifiable information, corporate confidential documents, financial data, payroll, legal documents, HR department files, employee and executive personal documents, and corporate correspondence.

After a detailed review, Baillie finalized its assessment on July 1, 2025, confirming that information related to certain individuals was affected. According to regulatory filings, the exposed data included names and Social Security numbers (PII), as well as driver’s license numbers, medical information, and health insurance information (PHI).

The breach impacted at least 595 individuals in Texas, four in Maine, and 42 in New Hampshire.

The incident was reported to the Maine Attorney General on July 31, 2025, to the Texas Attorney General on Aug. 1, 2025, and on July 31st to the New Hampshire Attorney General and Massachusetts Attorney General.

Notifications to affected individuals were sent via U.S. Mail on July 31, 2025.

Baillie Lumber's response

For those whose personal information was potentially affected, Baillie is offering 24 months of complimentary credit monitoring and identity theft protection services through Epiq. Impacted individuals are encouraged to enroll in these services, which include credit monitoring, dark web surveillance, identity restoration support, and up to $1 million in identity theft insurance.

Instructions and activation codes were included in the notification letters.

Baillie also provided guidance on how to protect against identity theft and fraud, such as monitoring account statements, reviewing free credit reports, placing fraud alerts or credit freezes, and contacting the Federal Trade Commission or local law enforcement to report suspected identity theft. The company has notified state regulators and the three major credit bureaus about the breach.

Given the ransomware nature of the attack and the types of information exposed, individuals who received a notice should take the following steps:

  • Enroll in the provided credit monitoring service as soon as possible
  • Monitor financial accounts and credit reports for suspicious activity
  • Consider placing a fraud alert or credit freeze with the credit bureaus
  • Report any signs of identity theft to the appropriate authorities

Protect Your Data

A breach notice means your personal details could be circulating far beyond the organization involved. One practical step is continuous monitoring: services such as Identity Defender (included with an ExpressVPN subscription) can automatically check dark-web markets, flag new credit-file activity, and request removal of your information from data-broker sites.

This kind of “early-warning system” can’t undo a breach, but it can help you spot misuse quickly and limit further exposure. ExpressVPN is offering 61% off, risk-free for 30 days, with ID Theft Insurance included and no extra cost for those who sign up for one or two years.

Notice Letter

This browser does not support inline PDFs. Please download the PDF to view it: Download PDF

Affected Entity
Baillie Lumber
Consumers Notification date
July 31, 2025
Date of Breach
Breach Discovered Date
July 01, 2025
Total People Affected
Information Types Exposed
  • Name of individual
  • Social Security Number Information
  • Driver’s License number
  • Medical Information
  • Health Insurance Information
  • Social Security number
  • social security numbers
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image