LPL Financial A.I CyberSecurity Scoring
LPL Financial
Company Information
Website:https://www.lpl.com/
Employees number:14,318
Number of followers:159,520
NAICS:52
Industry Type:Financial Services
Homepage:lpl.com
LPL Financial Risk Score (AI oriented)
Between 600 and 649
LPL FinancialFinancial Services
Updated:
02/06/2026
02/06/2026
622/1000
Poor
Caa
LPL Financial Global Score (TPRM)
xxxx
LPL FinancialFinancial Services
Score locked

LPL FinancialPoor
Current Score
622Caa (POOR)
01000
8 incidents
-47 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
622
MAY 2026
618
APRIL 2026
617
MARCH 2026
611
FEBRUARY 2026
610
JANUARY 2026
665
Breach
12 Jan 2026 • LPL Financial
Ashton Thomas Private Wealth and LPL Financial: LPL, Ameriprise, Ashton Thomas Report Data Breaches to Maine Regulators
LPL Financial, Ameriprise Financial, and Ashton Thomas Private Wealth Data Breaches
604
CRITICAL-61
ASHLPL1768395244
Cybersecurity Breaches Target Financial Advisors in Recent Months
Financial advisory firms have faced a surge in cyberattacks, with three major incidents reported in late 2023, exposing client data and enabling fraudulent trading schemes.
LPL Financial Breach (September–October 2023)
LPL Financial, the largest U.S. broker-dealer with 32,000 advisors, disclosed a breach on December 26, affecting 53 individuals, including one Maine resident. The company revealed that foreign threat actors compromised advisor accounts to execute a "hack pump-and-dump" scheme, artificially inflating stock prices through unauthorized transactions. LPL contained the incident and reported no ongoing issues, though law enforcement was notified.
Ameriprise Financial Phishing Attack (December 2023)
Ameriprise Financial, with over 10,000 advisors, reported a breach on December 30 after a phishing email tricked an advisor into exposing client data. The fraudulent email, disguised as a legitimate client communication, may have impacted 598 individuals, including 52 in Maine. While no evidence of data misuse was found, Ameriprise offered credit monitoring and emphasized its security measures, including an online security guarantee.
Ashton Thomas Private Wealth Breach (May–September 2023)
Scottsdale-based Ashton Thomas Private Wealth, managing $1.7 billion in assets, notified clients of a breach affecting 1,644 individuals, including three in Maine. Unusual activity in firm email accounts exposed sensitive data, such as children’s names, addresses, birthdates, and Social Security numbers. The firm hired forensic experts and offered credit monitoring to affected clients.
All three firms reported bolstering security measures following the incidents. The breaches highlight the growing threat of cyberattacks targeting financial advisors and their clients.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
DECEMBER 2025
662
NOVEMBER 2025
726
Breach
21 Nov 2025 • LPL Financial
LPL Financial Holdings Inc. and Mariner Wealth Advisors LLC: Mariners Wealth Advisors Data Breach Affects Nearly 9,000 Customers
Mariner Wealth Advisors Data Breach Affecting Nearly 9,000 Clients
664
CRITICAL-62
LPLMAR1780432565
Mariner Wealth Advisors Reports Data Breach Affecting Nearly 9,000 Clients
Mariner Wealth Advisors LLC, a Kansas-based wealth management and retirement plan advisory firm, disclosed a data breach that exposed the personal information of 8,995 customers. The incident, reported to the Maine Attorney General’s office on Monday, occurred on November 21, 2025, when a "criminal third party" accessed three employees’ cloud applications and downloaded sensitive files. The breach was detected three days later, on November 24.
Compromised data included clients’ names, birth dates, Social Security numbers, and account numbers, affecting 17 Maine residents among those impacted. While the firm’s investigation conducted with third-party experts found no evidence of data misuse, affected clients were notified via letter and offered 12 months of credit monitoring.
The breach follows a significant corporate shift: in April 2025, Mariner Advisor Network, a division of Mariner Wealth Advisors, was acquired by LPL Financial Holdings Inc. and Private Advisor Group LLC, transferring 367 advisers managing $31 billion in assets.
Notably, LPL Financial itself suffered a separate breach on November 10, 2025, exposing the data of 1,581 customers after malware spread through phishing attacks on adviser devices. The company responded by implementing new security safeguards.
The incidents reflect broader cybersecurity challenges, with the FBI’s 2024 Internet Crime Report recording over 1 million cybercrime incidents nationwide last year. Mariner Wealth Advisors has not yet publicly commented on the breach.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
NOVEMBER 2025
744
Cyber Attack
10 Nov 2025 • LPL Financial
Cetera Financial, Ameriprise, Hightower Advisors, LPL Financial and Edelman Financial Engines: LPL Financial Reports Cybersecurity Breach
LPL Financial Cybersecurity Breach Affecting 1,581 Clients
726
CRITICAL-18
AMEHIGLPLEDE1777062318
LPL Financial Reports Cybersecurity Breach Affecting 1,581 Clients
LPL Financial disclosed a cybersecurity incident that led to unauthorized securities transactions and financial transfers in some client accounts. The breach, which occurred on November 10, 2025, was discovered 10 days later and reported to Maine’s Attorney General.
The attack stemmed from malware distributed via phishing messages, compromising a limited number of financial advisors’ devices and granting unauthorized access to LPL’s web-based advisor portal. While the firm found no direct evidence that sensitive client data was accessed, it could not rule out the possibility. A total of 1,581 clients were affected, including two in Maine.
Upon discovery, LPL halted the unauthorized activity, secured affected accounts, and restored impacted accounts to their original financial positions. The firm also contacted law enforcement, conducted an internal investigation, and implemented new technical safeguards to strengthen security. No ongoing compromise was detected. Affected clients were offered two years of complimentary Experian credit monitoring.
This incident follows a separate October 2025 breach at LPL, where foreign threat actors exploited advisor accounts in a "hack pump-and-dump" scheme to manipulate stock prices. LPL is among several financial firms including Cetera Financial, Ameriprise, Hightower Advisors, and Edelman Financial Engines targeted by cybercriminals in recent months. The ShinyHunters extortion group, linked to breaches at Ameriprise and Mercer Advisors, has been a recurring threat in these attacks. Many of these incidents have been exposed through class action lawsuits alleging inadequate data protection.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
OCTOBER 2025
743
SEPTEMBER 2025
742
AUGUST 2025
741
JULY 2025
740
JULY 2021
707
Breach
26 Jul 2021 • LPL Financial
LPL Financial LLC
LPL Financial LLC Data Breach (2021)
649
CRITICAL-58
LPL1010090725
The Washington State Office of the Attorney General disclosed a data breach involving LPL Financial LLC, where an unauthorized party gained access to an advisor's email account between July 26 and July 28, 2021. The incident, reported on September 30, 2021, impacted 992 Washington residents, exposing highly sensitive personal information. Compromised data included names, Social Security Numbers (SSNs), financial and banking details, health insurance information, and medical records. The breach stemmed from a targeted compromise of an employee’s email account, likely through phishing or credential theft, enabling attackers to exfiltrate confidential client data. Given the nature of the exposed information—particularly SSNs and financial records—the incident poses severe risks of identity theft, financial fraud, and long-term reputational harm to both the affected individuals and LPL Financial. The breach underscores vulnerabilities in email security protocols and the critical need for robust access controls, especially in sectors handling sensitive client data. While the exact motive (e.g., financial gain, espionage) remains undisclosed, the scale and sensitivity of the leaked data classify this as a high-severity incident with potential regulatory and legal repercussions under data protection laws like HIPAA (for medical data) and state breach notification statutes.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
JANUARY 2020
741
Breach
01 Jan 2020 • LPL Financial
Fidelity Investments, LPL Financial, Mercer and Ameriprise Financial: Fidelity's $2.5M Data Breach Settlement: What Clients Should Know
Fidelity Investments Data Breach and Fine
665
CRITICAL-76
FIDLPLAMEMER1779194480
Fidelity Fined $1.25M Over Data Breach as Financial Sector Faces Rising Cybersecurity Risks
A recent data breach at Fidelity Investments has resulted in a $1.25 million fine, highlighting growing cybersecurity vulnerabilities in the financial services sector. The breach, which exposed sensitive client information, was part of a broader pattern of cyber incidents affecting major firms, including Ameriprise Financial and Mercer, both of which have faced legal and regulatory repercussions.
Key Details:
- Fidelity’s Breach & Fine: The company was penalized for failing to adequately protect customer data, though specifics of the breach such as the number of affected individuals remain undisclosed. The fine follows a separate $2.5 million settlement related to an earlier incident.
- Ameriprise Breach: Nearly 48,000 clients were impacted by a data exposure, though the company has not released full details on the cause or scope.
- Mercer’s Legal Challenges: The consulting firm is facing lawsuits over a data breach, underscoring the legal and financial risks of cybersecurity failures.
- LPL Financial Incident: A phishing attack led to unauthorized transactions, demonstrating how social engineering remains a persistent threat to financial institutions.
Broader Impact:
These incidents reflect escalating cyber threats targeting wealth management, investment advisory, and insurance firms. Regulatory scrutiny is intensifying, with fines and legal actions serving as a warning to the industry. The breaches also raise concerns about the exposure of Social Security numbers, client financial records, and other sensitive data, which could lead to identity theft or fraud.
As financial firms grapple with evolving cyber risks, the fallout from these breaches underscores the need for stronger security measures and compliance protocols.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
NOVEMBER 2018
783
Breach
01 Nov 2018 • LPL Financial
LPL Financial LLC
Data Breach at LPL Financial LLC
731
MEDIUM-52
LPL814072625
The California Office of the Attorney General reported a data breach involving LPL Financial LLC on November 17, 2018. The breach occurred on November 1, 2018, and was caused by unauthorized access to a user's account of their service provider, Capital Forensics, potentially exposing personal information including names, account numbers, and Social Security Numbers.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
FEBRUARY 2012
757
Breach
06 Feb 2012 • LPL Financial
LPL Financial LLC
Data Breach at LPL Financial
705
HIGH-52
LPL604072725
The California Office of the Attorney General reported a data breach involving LPL Financial on February 29, 2012. The breach occurred on February 6, 2012, due to the theft of an employee's desktop computer, potentially exposing personal information including names, Social Security numbers, and financial information of affected individuals; the number of affected individuals is unknown.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
SEPTEMBER 2011
803
Breach
23 Sep 2011 • LPL Financial
LPL Financial
Data Breach at LPL Financial
752
MEDIUM-51
LPL431070825
The Massachusetts Office of Consumer Affairs and Business Regulation reported a data breach involving LPL Financial on September 23, 2011. The breach affected 1 resident and involved paper records, specifically compromising account numbers.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for LPL Financial ??
What was LPL Financial's A.I Rankiteo Cyber Score in May 2026 ??
What was LPL Financial's A.I Rankiteo Cyber Score in April 2026 ??
What was LPL Financial's A.I Rankiteo Cyber Score in March 2026 ??
What was LPL Financial's A.I Rankiteo Cyber Score in February 2026 ??
What was LPL Financial's A.I Rankiteo Cyber Score in January 2026 ??
What was LPL Financial's A.I Rankiteo Cyber Score in December 2025 ??
What was LPL Financial's A.I Rankiteo Cyber Score in November 2025 ??
What was LPL Financial's A.I Rankiteo Cyber Score in October 2025 ??
What was LPL Financial's A.I Rankiteo Cyber Score in September 2025 ??
What was LPL Financial's A.I Rankiteo Cyber Score in August 2025 ??
What was LPL Financial's A.I Rankiteo Cyber Score in July 2025 ??
What is the average per-incident point impact on LPL Financial's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with LPL Financial ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view LPL Financial's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?