Data Breach

Cardinal Services Data Breach Lawsuit Investigation

If you were affected by the Cardinal data breach, you may be entitled to compensation.
Updated on
Published on
Cardinal Services Data Breach Lawsuit Investigation
Cardinal Services Data Breach Lawsuit Investigation

Shamis & Gentile P.A., one of the nation's premier class action law firms specializing in data breach cases, is investigating the Cardinal Services, Inc., dba Cardinal data breach.

If you were affected by the data breach, your sensitive personally identifiable information may have been exposed, and you may be eligible for compensation.

About Cardinal

Cardinal Services, Inc., also known as Cardinal, is a privately owned employment services and HR outsourcing company based in the Pacific Northwest. Founded in 1984, the company is headquartered at 110 Ackerman Ave, Coos Bay, Oregon.

Cardinal provides a range of services including staffing and recruiting, payroll processing, workers’ compensation, HR administration, benefits management and risk compliance.

What Happened?

Cardinal discovered a data breach on May 12, 2026. The breach occurred between June 25, 2025, and August 8, 2025, during which an unauthorized party gained access to sensitive consumer information.

The RHYSIDA ransomware group claimed responsibility for the incident and threatened to publish stolen data on the dark web, with a posting made on July 15, 2025.

The breach affected a reported 142,323 individuals in the United States, including residents of Maine, Vermont and other states.

Cardinal notified affected consumers in writing on May 20, 2026.

Information Exposed:

  • Social Security numbers
  • Financial account codes
  • Credit and debit account information
  • Government ID numbers

Sources

SUBMIT YOUR CLAIM TO THE LAW FIRM HANDLING THIS INVESTIGATION