On July 29, 2024, OneGroup NY Inc. discovered suspicious activity involving its email environment, which affected personal information connected to MEMIC Indemnity-issued workers’ compensation policies. An investigation revealed that an employee’s email account was accessed without authorization between May 6 and May 21, 2024.
The company could not determine which emails were accessed or viewed. A detailed investigation took place and was completed on February 4, 2025, and confirmed personal information associated with MEMIC Indemnity-issued workers’ compensation accounts may have been compromised.
The data breach exposed a range of sensitive information, including names and other personal details. The number of individuals affected and specific types of information has not yet been specified.
After discovering the data incident, OneGroup and MEMIC took steps to secure their email systems and launched an investigation to to determined the scope and impact of the breach. Affected individuals are in the process of being identified and notified.
If you receive notification from MEMIC or OneGroup, you may want to:
An assistance line for affected impacted individuals is available at 1-800-405-6108 between the hours of 8 a.m. and 8 p.m. Eastern Time, Monday through Friday.
For more information about the company, visit The MEMIC Group’s official website.
A breach notice means your personal details could be circulating far beyond the organization involved. One practical step is continuous monitoring: services such as Identity Defender (included with an ExpressVPN subscription) can automatically check dark-web markets, flag new credit-file activity, and request removal of your information from data-broker sites.
This kind of “early-warning system” can’t undo a breach, but it can help you spot misuse quickly and limit further exposure. ExpressVPN is offering 61% off, risk-free for 30 days, with ID Theft Insurance included and no extra cost for those who sign up for one or two years.