Reported to the SC Attorney General on December 23, 2025.
SC residents may qualify for compensation. Free attorney review — no obligation, no upfront cost.
Check My Rights →Sax, LLP was the subject of a data breach notification filed with the SC Attorney General. The AG filing was recorded on December 23, 2025.
Sax, LLP operates as a prominent professional services firm, delivering comprehensive accounting, tax, auditing, and business advisory solutions to a diverse clientele that includes high-net-worth individuals, corporations, non-profits, and estate executors. Because of the core nature of its practice, the firm functions as an indispensable financial repository, routinely collecting, processing, and retaining an immense volume of deeply sensitive and confidential information. Clients entrust Sax, LLP with foundational financial documents, corporate records, and personal identifying data necessary to manage tax liabilities, execute corporate audits, and handle complex financial planning. Consequently, the firm maintains a vast digital ecosystem containing the digital footprints of thousands of individuals, making its network an attractive target for malicious actors seeking lucrative private data. In 2025, Sax, LLP formally reported a significant security incident to the South Carolina Attorney General's office, alerting affected individuals and regulatory authorities to an unauthorized compromise of its network environment. While the exact vector of the breach continues to be evaluated through ongoing forensic investigations, incidents of this magnitude targeting professional service firms typically involve sophisticated cyberattacks such as targeted ransomware deployments, unauthorized entry into credentialed databases, or vulnerabilities exploited within third-party vendor platforms. Professional service organizations are frequently targeted because a single breach can yield a massive consolidation of financial and personal data harvested from multiple distinct corporate and individual accounts simultaneously, bypassing perimeter defenses through advanced social engineering or zero-day exploits. According to preliminary reports and standard exposure profiles for accounting and financial advisory firms, the compromised files likely contain a dangerous intersection of Personally Identifiable Information (PII) and sensitive financial records. Exposure of foundational identifiers such as full names, dates of birth, and Social Security numbers leaves victims permanently vulnerable to sweeping identity theft and fraudulent credit applications. Furthermore, because of Sax, LLP's specific industry focus, the breach frequently encompasses critical tax return information, wage and compensation details, banking routing and account numbers, and direct deposit details. The exposure of tax and banking records carries an immediate risk of fraudulent tax return filings, wherein criminals intercept legitimate refunds, as well as unauthorized financial account takeovers that can drain personal and business funds before victims even realize their security has been breached. As a professional entity handling high-sensitivity financial and tax data, Sax, LLP was bound by stringent legal duties under state consumer protection statutes, common law negligence principles, and federal regulatory frameworks such as the Gramm-Leach-Bliley Act (GLBA) where applicable. These legal obligations mandate the implementation of robust administrative, technical, and physical safeguards—including multi-factor authentication, advanced endpoint detection, rigorous employee cybersecurity training, and regular network vulnerability testing—to secure digital assets against foreseeable intrusions. The occurrence of a data breach of this scale strongly indicates a potential failure or breakdown in these foundational security protocols, raising serious questions regarding whether the firm met the expected standard of care required of modern financial custodians. Receiving a data notification letter from Sax, LLP is both an official acknowledgment that your private information was compromised and a critical triggering event that establishes your legal standing to participate in a class action lawsuit. Under prevailing legal standards, impacted individuals do not need to wait until they have suffered actual financial loss or complete identity theft to seek legal recourse; the increased, imminent risk of future harm caused by compromised credentials is actionable. Our class action law firm is currently investigating potential claims against Sax, LLP on a contingency fee basis, meaning affected individuals pay absolutely nothing out of pocket, and our firm only recovers attorney fees if we successfully secure a financial settlement or judgment on your behalf.
Based on the data types reported in this filing, affected individuals face the following specific risks:
Your SSN is the master key to your identity. Once exposed, criminals can open new lines of credit, take out loans, or file taxes in your name.
Combined with a name and other leaked data, date of birth helps criminals pass identity verification questions at banks and government agencies.
Under the South Carolina data breach notification law, you may have a legal claim against Sax, LLP if any of the following apply:
Applicable law: This breach was reported under the South Carolina data breach notification law, which establishes your right to seek damages from Sax, LLP.
The hours spent responding to a data breach — canceling accounts, contacting credit bureaus, updating passwords, and investigating fraud — represent compensable economic harm in data breach litigation.
Once your SSN is exposed, protection becomes an ongoing expense. Plaintiffs in data breach settlements have recovered costs for credit freezes, identity protection subscriptions, and time spent dealing with fraudulent accounts — sometimes covering multiple years of exposure.
Fees charged to close and reopen accounts, issue replacement cards, or dispute fraudulent transactions are recoverable in data breach litigation. So are the costs of overdrafts, late payments, and credit damage caused by unauthorized activity.
Data breach victims regularly report anxiety, loss of sleep, and ongoing fear of identity theft. These non-economic harms are cognizable injuries in data breach litigation, particularly in cases involving SSN or medical record exposure.
Note: an attorney general breach filing does not by itself establish a settlement fund, a payment amount, or a claim deadline. If an official settlement notice is later issued, rely on that notice for payment details and deadlines.
No. Under South Carolina data breach notification law and federal law, the unauthorized exposure of your personal data — regardless of whether it has been actively misused — can be sufficient grounds for a claim. The breach itself is the injury.
Nothing. The Law Office of David S. Harris handles data breach cases on contingency — you pay zero upfront and owe nothing unless compensation is recovered.
Immediately place a free credit freeze at all three bureaus (Equifax, Experian, TransUnion). A freeze blocks new accounts from being opened in your name. Then file a complaint with the FTC at IdentityTheft.gov and contact our office — SSN exposure is one of the most serious breach types.
Banks may reverse fraudulent charges, but they are not obligated to compensate you for time lost, stress, or indirect damages. A class action claim against the breached company can recover those additional categories of harm.
Statutes of limitations for data breach claims vary by state but typically run 2–4 years. Depending on when you learned of the breach, you may still have time. Contact our office for a free eligibility review — there is no cost to find out.
Accepting free credit monitoring from Sax, LLP does not waive your right to pursue legal action unless you signed a specific release waiving claims. In most cases, victims who accepted monitoring can still file.
Not necessarily. Many data breach victims are never notified directly. If your personal information was held by Sax, LLP during the relevant period, you may still qualify even without receiving a letter. A free eligibility review can confirm your status.
Received a notification letter from Sax, LLP?
Read our dedicated guide — what the letter means and exactly what to do.
If you were affected by the Sax, LLP data breach, you may be entitled to compensation. Submit your information below for a free attorney review — no obligation, no upfront cost.
Source: State Attorney General filing, SC
View Official AG Filing →Sax, LLP breach?
Free case review · No fee unless you win