Skip to content
Back to Blog
low severity March 06, 2026 · 4 min read

EP Wealth Advisors, LLC Data Breach Notice (Oregon Attorney General)

If you received a notice from EP Wealth Advisors, LLC, here’s what the filing says was exposed, and what to do about it.

EP Wealth Advisors, LLC notified Oregon residents of a data breach in a filing reported to the Oregon Department of Justice on March 06, 2026. The filing puts the incident itself on February 02, 2026.

EP Wealth Advisors, LLC Data Breach Notice (Oregon Attorney General)

The filing from EP Wealth Advisors, LLC tells you that personal information belonging to 47,043 people was exposed on February 02, 2026. The company reported the incident to Oregon authorities on March 06, 2026 — 32 days later. Because the organisation is required to notify affected individuals directly, the letter you may have already received is the clearest way to know whether your records were included.

If No Letter Arrives, Your Information Was Likely Not Affected

Absence of a letter usually means you were not part of this group. However, if you have moved since February 02, 2026, a notice sent to your previous address may not have reached you. In that case, contact EP Wealth Advisors directly to confirm your status.

What the Exposed Personal Information Actually Enables

The record lists personal information as the category involved. No passwords, no financial account numbers, and no permanent government identifiers such as Social Security numbers appear in the disclosed categories. This is genuinely good news. Without those high-value identifiers, the immediate risk of new account fraud or tax-related identity theft is significantly lower than in many similar incidents.

Still, basic personal details can be combined with information already available from other sources. Fraudsters may attempt to use them for impersonation on existing accounts, verification questions, or low-level social engineering. The value of this data does not disappear quickly even if it cannot open entirely new financial accounts on its own.

Why the 32-Day Timeline Matters

The breach occurred on February 02 and the filing reached Oregon authorities on March 06. That interval is relatively short for breach notifications. It suggests the company moved promptly once it had completed whatever internal review the law requires. While the record does not explain exactly what happened during those 32 days, the speed itself reduces one common source of worry — prolonged undetected access.

The Limits of What This Filing Tells Us

This notification does not disclose the initial access method, whether data was copied or simply viewed, or the precise fields each individual record contained. It also does not state that any passwords were exposed, because none were listed. That absence is meaningful. You do not need to change any password connected to EP Wealth Advisors as a direct result of this incident.

The record is silent on medical information, driver’s license numbers, passport numbers, or banking details. Only the broad category of personal information is named. This limits speculation but also limits certainty. What matters most is what the company is required to tell you directly if your specific records were touched.

What Remains Permanent and What You Still Control

No permanent identifiers that cannot be changed were exposed according to the categories listed. This removes several of the longest-lasting risks that usually accompany these notices. The information that was involved consists of details you can monitor and protect through standard precautions rather than lifelong credit freezes or constant vigilance for synthetic identity fraud.

Even so, anyone whose information was included should remain alert to unexpected account activity or unfamiliar inquiries. The exposure adds one more data point that criminals might use alongside information obtained elsewhere.

Practical Steps Specific to This Notice

  • Review any letter you received from EP Wealth Advisors in detail. It will list exactly which types of information relating to you were involved. Keep the letter; it contains contact information for questions and any offered services.
  • Check your existing financial accounts for unusual activity over the next several months. Look especially at investment, retirement, and banking accounts you hold with or through EP Wealth Advisors. Set up alerts where available.
  • Place a fraud alert with one of the three major credit bureaus. A fraud alert requires lenders to verify your identity before opening new accounts in your name. It is free, lasts one year, and is the most useful step when only personal information is confirmed exposed.
  • Be cautious with unsolicited calls or messages that reference your relationship with EP Wealth Advisors. Verify the caller independently before providing any additional personal details.
  • If you have moved since February 02, 2026 and have not received a letter, contact the firm directly. Ask them to confirm whether your records were part of the 47,043 affected individuals.

This incident affects a large number of people — 47,043 according to the filing — but the limited categories named reduce its severity compared with breaches that expose Social Security numbers or full financial credentials. The letter remains your definitive answer. Where that letter is silent, the absence itself carries weight.

Report details & sourcing

Severity Low contact details only, none of them permanent
Disclosed March 06, 2026
Last reviewed July 22, 2026
Affected 47043
Data exposed Personal information (per the breach notification)
Editorial & sourcing policy
GalaxyWarden is a breach-monitoring service and news aggregator. We do not exfiltrate, host, purchase, or redistribute stolen data. Breach information is compiled from publicly accessible sources and threat-intelligence platforms, and is reported as claims attributed to their source. We promptly correct or remove material shown to be inaccurate — see our content & takedown policy or write to support@galaxywarden.com.
Share this Post on X Reddit Email