DataBreachLawGroup.com
InvestigationInvestigation Open

Data Breach Law Group Investigates the Samaritan'S Purse Data Breach

By Data Breach Law Group | Posted on February 15, 2025 · Illinois

Miami, FL — Data Breach Law Group is investigating a data breach involving Samaritan'S Purse, reported to the Illinois Attorney General on February 15, 2025. The firm is reviewing whether affected individuals have legal claims arising from the incident.

Samaritan's Purse is a prominent, internationally recognized evangelical Christian humanitarian aid organization that provides emergency relief, medical assistance, and community development projects worldwide. To fulfill its global mission, coordinate complex logistical operations, and manage a vast network of international staff, volunteers, donors, and beneficiaries, the organization routinely collects, processes, and stores significant volumes of sensitive personally identifiable information (PII). This data repository typically includes extensive records for personnel, payroll administration, donor financial accounts, and detailed administrative files, making the organization an attractive target for malicious cyber actors seeking to exploit valuable personal data. In 2025, Samaritan's Purse reported a significant data security incident to the Illinois Attorney General, signaling a breach of the digital infrastructure safeguarding its sensitive records. While exact technical forensics vary by incident, breaches affecting large humanitarian and non-profit organizations frequently stem from sophisticated cyber threats such as targeted ransomware deployments, unauthorized intrusions into cloud-hosted databases, or vulnerabilities within third-party vendor systems. In many instances, malicious actors leverage compromised employee credentials or zero-day vulnerabilities to bypass perimeter defenses, gaining undetected access to internal networks where sensitive administrative and personnel files are stored. The exposure resulting from this security incident compromises several categories of sensitive data, each carrying distinct and severe risks for affected individuals. Compromised records often include full legal names, dates of birth, Social Security numbers, banking and direct deposit information, and confidential personnel or donor records. When Social Security numbers and financial details are exposed, victims face an immediate and long-lasting threat of identity theft, fraudulent credit applications, unauthorized bank withdrawals, and complex tax fraud schemes. Furthermore, because non-profit organizations often maintain extensive donor databases alongside employee files, victims may find themselves uniquely vulnerable to targeted phishing scams and social engineering attacks that weaponize their philanthropic engagement history. As an entity entrusted with sensitive personal information, Samaritan's Purse was bound by robust legal and regulatory obligations to secure its network environment and protect the PII entrusted to its care. Under the Illinois Personal Information Protection Act (PIPA) and applicable federal data security standards, organizations maintaining digital records must implement reasonable administrative, physical, and technical safeguards to prevent unauthorized access. The occurrence of a successful data breach indicates a potential failure in these statutory duties, suggesting that existing cybersecurity measures, encryption protocols, or access controls were inadequate to withstand modern cyber threats. Receiving a formal data breach notification letter from Samaritan's Purse serves as an official acknowledgment that your private information was compromised due to inadequate security practices. Under Illinois law, the receipt of this notice establishes the legal standing necessary to participate in or initiate a class action lawsuit aimed at holding the organization accountable. Importantly, affected individuals do not need to prove that they have already suffered direct financial loss to seek legal recourse; the increased risk of future identity theft and the necessity of taking preventative mitigation steps are recognized harms. Our firm evaluates these cases on a contingency fee basis, meaning you pay nothing out of pocket and owe no legal fees unless we successfully recover compensation on your behalf.

If you were affected

  • Stay alert to targeted scams

    Be cautious of calls, texts, or emails that reference this breach. Legitimate organizations won't ask you to confirm sensitive details through an unsolicited message.

  • Keep your notification letter

    Save the notice you received. It documents that your information was involved and is often needed to enroll in any credit monitoring offered or to join a related legal claim.

Did you receive a letter from Samaritan'S Purse?

A case review is free and confidential. Tell us about your letter and we will explain your options.

Got a Notification Letter? Find Out If You Qualify

Free review. No cost, no obligation.

Upload your breach letter (optional)

No attorney-client relationship is created by submitting this form. Attorney Advertising.

Related investigations

This page is attorney advertising and is for general informational purposes only. It is not legal advice, and contacting Data Breach Law Group does not create an attorney-client relationship. Case details are drawn from publicly reported breach notifications and may be updated as more information becomes available. Prior results do not guarantee a similar outcome.