On June 18, 2026, the Lynx ransomware group claimed to have targeted Easterseals Iowa, a nonprofit supporting individuals with disabilities in Iowa. The ransomware group stated that a full leak of data would be published if contact was not made. As of June 25, 2026, Easterseals Iowa has not released any official breach notification or public statement concerning this incident.
No specific types of data compromised have been confirmed, although the ransomware group threatened to leak “sensitive data.” The number of affected individuals is unknown. There is no official confirmation regarding the involvement of Social Security numbers, medical data, or financial data. No state Attorney General filings, class action lawsuits, or multidisciplinary litigation has been reported or initiated.
Details surrounding this incident, including the extent of any data compromise and the number of individuals affected, may emerge later. Official notifications from Easterseals Iowa may also be delayed.