GrayRobinson, P.A., a Florida-based legal services organization, experienced a data breach that involved unauthorized access and removal of files from March 5, 2025, to March 24, 2025. The firm detected this unauthorized access on March 24, 2025, and subsequently notified individuals starting April 24, 2026, after completing a review of the incident on April 13, 2026. Official notices were sent to affected residents in several states, and the incident was reported to law enforcement.
The breach exposed personally identifiable information for 65,113 individuals across the United States. The types of data compromised varied by individual but included first and last name, date of birth, Social Security numbers, driver's license numbers, state and government IDs, and financial account information. Protected health information, such as medical and health insurance details, was also involved. The firm states there is no evidence of identity theft or fraud as of the notification date.
Details surrounding data breaches can emerge over time, and notification processes may be ongoing. If you received a data breach notice related to GrayRobinson, P.A., it is important to review it carefully for specific details about the information affected.