Ocean Edge Resort Data Breach Investigation

Ocean Edge Resort and Golf Club reported a network security incident that may have affected sensitive personal information belonging to certain individuals. The company said an unauthorized actor accessed its network and copied files, although the information involved varies by person. Strauss Borrelli PLLC is investigating the reported incident and its potential impact on consumers and employees. If you received a notice or believe you may be affected, fill out the secure contact form on this page to ask whether you may qualify to pursue a claim.

Key Facts at a Glance

  • Entity Involved: Ocean Edge Resort and Golf Club (Hospitality)
  • Incident Type: Unauthorized network access and file copying
  • Date of Incident: July 22, 2025, to July 31, 2025
  • Discovery Date: July 31, 2025
  • Official Notice Date: Not stated in the available notice
  • Exposed Information: Names, Social Security numbers, dates of birth, driver’s license numbers, financial account information, medical information, and health insurance information
  • Affected Population: Not publicly stated in the available notice

What Happened?

According to Ocean Edge’s published notice, the resort discovered suspicious activity within its network on July 31, 2025. The company reported that its investigation determined an unauthorized actor had accessed the network between July 22 and July 31, 2025, and copied certain files. Ocean Edge then reviewed the potentially affected files to identify the information they contained and the individuals to whom that information related.

Ocean Edge said it was notifying individuals identified in the relevant files when current address information was available. The company also reported the incident to law enforcement, reviewed its security policies and procedures, and began implementing additional safeguards. Available regulatory listing information indicates that the incident was publicly listed in connection with a Vermont Attorney General filing on August 25, 2026. Ocean Edge stated that it had no indication, as of its notice, that the involved information had been used for identity theft or fraud.

What Information Was Exposed?

Ocean Edge reported that the information potentially affected varies from person to person. The files may have contained an individual’s name, Social Security number, date of birth, driver’s license number, financial account information, medical information, or health insurance information. The notice does not establish that every listed category was involved for every person.

This combination of identity, financial, and health-related data may create risks beyond ordinary account fraud. Affected individuals should be alert for fake reservation or payment messages, fraudulent account-verification requests, medical billing irregularities, health insurance scams, and communications impersonating the resort, a bank, an insurer, or a healthcare provider.

What Should You Do Next?

  1. Review the notice carefully: Determine which information Ocean Edge identified as potentially involved for you. Keep the notice, envelope, and any related communications in a secure place.
  2. Monitor financial and credit activity: Check bank and credit card accounts for unfamiliar transactions. Obtain your credit reports through AnnualCreditReport.com and review them for accounts, addresses, or inquiries you do not recognize.
  3. Consider a fraud alert or credit freeze: A fraud alert asks creditors to verify your identity, while a credit freeze restricts access to your credit file. Contact Equifax, Experian, and TransUnion directly to evaluate these options.
  4. Watch for hospitality and healthcare scams: Be cautious of unexpected reservation confirmations, refund offers, payment links, insurance-verification requests, medical bills, or calls seeking additional personal information. Verify communications using a trusted telephone number or website.
  5. Strengthen account security and document problems: Change reused passwords, enable multifactor authentication where available, and preserve records of suspicious messages, fraudulent charges, identity-theft reports, or expenses that may relate to the incident.

Your Legal Rights

Individuals whose personal information was involved may have rights under applicable state privacy, consumer-protection, and data breach notification laws. Those rights depend on factors such as where the person lives, what information was involved, whether the information was misused, the adequacy and timing of notice, and whether the person experienced financial or other legally recognized harm.

Potential rights may include requesting information about the incident, using available identity-theft protections, disputing fraudulent accounts or charges, and pursuing appropriate legal remedies when supported by the facts and governing law. Receiving a notice does not automatically establish a legal claim. Affected individuals may wish to retain relevant notices, credit reports, receipts, correspondence, and evidence of suspected misuse for evaluation by an attorney.

Why Hire Strauss Borrelli PLLC?

Strauss Borrelli PLLC represents individuals affected by cybersecurity and privacy incidents and evaluates whether reported events may support claims under applicable law. The firm can review the circumstances of the Ocean Edge incident, the information potentially involved, the notice provided, and any documented losses or suspicious activity. Consulting an attorney can help affected individuals understand available options without assuming that every recipient has the same rights or damages.

If you received a breach notification letter from Ocean Edge Resort:

We would like to speak with you about your rights and potential legal remedies in response to this data breach. Please fill out the form, below, or contact us at 872.263.1100 or sam@straussborrelli.com.

Data Breach Website Blog Form

Contact Us

Learn about your legal rights

Name
Terms & Conditions and Privacy Policy

What can you do if you were impacted by a data breach?

If you were impacted by a data breach, you may consider taking the following steps to protect your personal information.

  1. Carefully review the breach notice and retain a copy;
  2. Enroll in any free credit monitoring services provided by the company;
  3. Change passwords and security questions for online accounts;
  4. Regularly review account statements for signs of fraud or unauthorized activity;
  5. Monitor credit reports for signs of identity theft; and
  6. Contact a credit bureau(s) to request a temporary fraud alert.

Contact Us Now

Data Breach Website Blog Form

What can you do if you were impacted by a data breach?

If you were impacted by a data breach, you may consider taking the following steps to protect your personal information.

  1. Carefully review the breach notice and retain a copy;
  2. Enroll in any free credit monitoring services provided by the company;
  3. Change passwords and security questions for online accounts;
  4. Regularly review account statements for signs of fraud or unauthorized activity;
  5. Monitor credit reports for signs of identity theft; and
  6. Contact a credit bureau(s) to request a temporary fraud alert.

One Magnificent Mile
980 N Michigan Avenue, Suite 1610
Chicago, Illinois 60611

Phone: 872.263.1100
Toll Free: 866.748.6220

One Magnificent Mile
980 N Michigan Avenue, Suite 1610
Chicago, Illinois 60611

Phone: 872.263.1100
Toll Free: 866.748.6220

©2026 STRAUSS BORRELLI PLLC. ALL RIGHTS RESERVED. ATTORNEY ADVERTISING.
PRIVACY POLICY  |  TERMS & CONDITIONS  |  COOKIE POLICY

©2026 STRAUSS BORRELLI PLLC. ALL RIGHTS RESERVED. ATTORNEY ADVERTISING.

PRIVACY POLICY  |  TERMS & CONDITIONS  |  COOKIE POLICY