McKenna Pro, a consumer services company, was reportedly targeted by the Qilin ransomware group on March 9, 2026. The Qilin group claimed responsibility for the attack and issued an extortion notice, threatening to leak sensitive data if negotiations were not initiated. While one source indicates the company is based in Canada, another describes it as operating in the US, with conflicting information on its exact location. The company utilizes Microsoft 365 infrastructure.
As of March 10, 2026, critical details such as the number of affected individuals, specific data types exposed beyond a general threat to leak "sensitive data," and states affected have not been publicly disclosed or documented. Additionally, information regarding notification status to affected individuals, State Attorney General filings, official breach notification letters or statements from the company, class action lawsuits, MDL status, public trading status, company revenue estimates, or whether it was a vendor/third-party breach remains unavailable.
Given the recent disclosure of this incident, formal breach notifications, regulatory filings, and legal actions have likely not yet occurred. Further information is expected to emerge as McKenna Pro conducts its investigation and adheres to data breach notification laws.