Data breach
Coggins Insurance Agency
- Records
- 21,657
- Breach date
- 10 August 2026Estimated
- Added
- 18 August 2026
What was exposed
7 types of data · 1 puts you at serious risk
- Names21,657
- Phone numbers10,979
- Email addresses7,213
- Street addresses1,050
- Social security numbers737
- Dates of birth455
- Vehicle VINs121
About this breach
The Global Secret Group, a relatively new ransomware and extortion group, has claimed responsibility for a data breach at Coggins Insurance Agency, an independent insurance firm based in Florida. According to our investigation team, the breach involved an estimated 21,657 rows of client information, with an estimated attack date of August 10, 2026.
The claim was first logged by Ransomware.live, a site that tracks ransomware group leak posts, which lists the group's alleged stolen data at 85.9 GB, spanning roughly 245,768 files. Ransomware.live notes that Global Secret Group is an emerging group, and its claim has not been independently verified. Coverage of the incident has otherwise been limited to breach-tracking sites, including HookPhish and BreachSense.
Limited public reporting: As of September 25, 2026, detailed company notices or major news coverage for this listing were limited in sources reviewed. The facts below rely primarily on the indexed fields plus any secondary sources cited.
Breach Timeline
August 10, 2026: Ransomware.live recorded the Global Secret Group's claim against Coggins Insurance Agency, listing an estimated attack date of August 10, 2026, and roughly 85.9 GB of alleged exfiltrated data.
August 11, 2026: BreachSense published its own breach report on the incident, citing a leak size of 85.9 GB.
What Information Was Compromised?
Our analysis found the following data types in this breach: names for all 21,657 individuals in the dataset, 10,979 phone numbers, 7,213 email addresses, 1,050 street addresses, 737 Social Security numbers, 455 birthdays, and 121 vehicle VINs.
Not every individual is affected by every type of data listed here.
Because this is an insurance agency, the files involved may also relate to insurance policies and claims, but the full contents of the alleged 85.9 GB leak have not been independently cataloged as of September 25, 2026.
What Are the Potential Risks for Affected Individuals?
The most serious exposure here is the Social Security numbers. Combined with names, birth dates, and street addresses, those details are enough for identity thieves to open fraudulent credit accounts, file fake tax returns, or commit medical identity fraud in a victim's name.
Email addresses and phone numbers are also valuable on their own. People whose contact details appear in the breach should expect an increase in phishing messages, scam calls, and text messages that impersonate insurance companies, banks, or government agencies. Attackers who know your name, insurer, and recent breach history can make those messages far more convincing.
Vehicle VINs carry a smaller but real risk, since they can be used in title fraud or to target specific vehicles.
What Should You Do If You Were Affected?
If you are or have been a client of Coggins Insurance Agency, take the following steps:
Place a free fraud alert or credit freeze with the three major credit bureaus: Equifax, Experian, and TransUnion. A freeze blocks most new credit accounts from being opened in your name.
Review your credit reports at AnnualCreditReport.com for accounts or inquiries you do not recognize, and keep checking periodically.
File your taxes early if possible, since a refund fraudster may try to file before you do.
Be skeptical of unexpected calls, texts, or emails that reference your insurance, your bank, or this breach. Do not click links or share codes or passwords.
Change passwords on any accounts that share a password with your Coggins Insurance or email accounts, and enable two-factor authentication where it is offered.
Because no verified notice from the agency was available as of September 25, 2026, affected individuals cannot currently rely on the company for details about their own exposure. Treat any purported notice claiming to come from the agency with care until it can be confirmed through official channels.
In the news
- Ransomware.live, victim listing for Coggins Insurance Agencyransomware.live (opens in a new tab)
- HookPhish, "Ransomware Group Global Secret Group Hits: Coggins Insurance Agency"hookphish.com (opens in a new tab)
- BreachSense, Coggins Insurance Agency data breach reportbreachsense.com (opens in a new tab)
