• Skip to main content
  • Skip to secondary menu
  • Skip to primary sidebar
  • Skip to footer
  • Contact Us
  • Post A Job

Agency Checklists

Massachusetts Insurance News & Job Opportunities

  • AC Interviews
  • Agency M&A
  • Career News
  • CAR News
  • DOI News
  • Coverage Cases
  • Innovation
  • InsurOp-Eds
  • AC Podcast
You are here: Home / Latest News / XS Brokers’ Data Breach: When A Cyber Insurance Expert Becomes The Victim Of A Data Breach

XS Brokers’ Data Breach: When A Cyber Insurance Expert Becomes The Victim Of A Data Breach

September 22, 2025 by Owen Gallagher

Agency Checklists, MA Insurance News, Mass. Insurance News

As a crucial reminder for the insurance industry that cyber risk is universal, even firms that help other businesses manage cyber risk can find themselves being data breached. This reality was made clear on September 9, 2025, when XS Brokers, the Quincy-based excess and surplus broker that proclaims on its website, “Cyber Security and Data Breach is our specialty,” notified the Attorney General under M.G.L. c. 93H, of a data breach.

The incident transforms XS Brokers from a provider of insurance solutions into a real-world case study on why those solutions, particularly cyber liability coverage, are indispensable for every business.

The Anatomy of the Breach

According to the report filed with the Massachusetts Office of Consumer Affairs and Business Regulation, the breach at XS Brokers affected at least two residents of Massachusetts. The type of personal information compromised included Social Security Numbers. However, the legal obligation to report data breaches only applies to personal identifying information of consumers. XS did not have to report under Chapter 93H, the loss of commercial information in the breach.

In its notification letter to affected individuals, the firm stated it discovered on August 19, 2025, that their personal information was included in data that was “accessed or acquired by the unauthorized actor”. Upon learning of the incident, the company stated that it “contained the threat and immediately commenced a prompt and thorough investigation” with the assistance of external cybersecurity professionals. While XS Brokers noted it was not aware of any reports of identity fraud as a direct result of the incident, it took the standard remedial step of offering victims a complimentary two-year membership to Experian’s IdentityWorks credit monitoring and identity restoration service.

The Inevitable Fallout: Solicitations for potential class actions

The public filing of the data breach immediately placed XS Brokers in the crosshairs of law firms and websites that seek to potentially file data breach class-action lawsuits. Just two days after XS Brokers began mailing notification letters on September 9, 2025, the law firm Strauss Borrelli PLLC announced on September 11 that it was formally investigating the incident. The firm began soliciting affected individuals, stating, “We would like to speak with you about your rights and potential legal remedies in response to this data breach”. Similarly, the website Class Action U began targeting victims, helping them “connect with skilled attorneys” for a potential class-action lawsuit. This site noted that individuals whose data was compromised could be entitled to compensation for damages, including loss of privacy, emotional distress, and out-of-pocket expenses.

The Teachable Moment for Every Agent

For agents, this incident is a powerful and local sales tool. The fact that an insurance brokerage, expert in cyber risks, fell victim to a data breach demonstrates that no industry is immune and no amount of internal knowledge can eliminate cyber risk entirely.

This situation perfectly illustrates that cyber resilience requires a two-pronged strategy: strong prevention efforts and a comprehensive insurance plan to manage the financial consequences when an attack succeeds. The XS Brokers incident underscores the crucial need for coverage that addresses the specific costs outlined here: forensic investigation, legal counsel, regulatory compliance, notification expenses, credit monitoring services, and legal defense against liability claims.

Use this real-world example to drive the point home with your clients. Cyber insurance is not an optional purchase; it is a fundamental necessity for survival in today’s business environment.

To review the exemplar data breach notification letter XS Brokers submitted to the Massachusetts Attorney General, click the link below:

XS Brokers Insurance Agency, Inc. Data Breach Notification Letter (PDF)

Primary Sidebar

Job Board

Career News

Arbella Insurance has appointed Jon Swartz as vice president and chief actuary.

Arbella Appoints New Vice President, Chief Actuary

Professional headshot of a smiling man in a blue suit against a dark gray background.

Jeffrey C. Johnston Named NAIC Chief Executive Officer 

Patriot Growth Insurance Services appoints Chi Vo as Senior Vice President of Operations to lead agency integration and growth strategy

Chi Vo Joins Patriot Growth Insurance Services as Senior Vice President of Operations

Arbella Insurance leadership transition Bob Bizak retirement Andrew O’Donoghue promotion

Arbella Insurance Group Announces Retirement of Bob Bizak, Executive Vice President of Sales & Marketing 

View All

Listen Now

Sponsor

Interviews

From Nuptials, Tickets, and Taxes to Trusted Advisor: One Agency’s Unique Path to P&C Success

A Conversation with Evan Silverio, President & CEO of Silverio Insurance Group

Deland, Gibson Celebrates 125 Years: A Conversation with CEO Chip Gibson

The Fourth-Generation Family-Owned Agency is Based in Wellesley

Talking with Richard Welch: Growth and Innovation at Hospitality Mutual | Agency Checklists

Talking with Richard Welch: Growth and Innovation at Hospitality Mutual

Mr. Welch is CEO of Massachusetts-based Hospitality Insurance Group

Born and Bred in the Bay State: The Special Agent Story

Our Latest Agency Interview is with the Founder & President of Special Agent

A Conversation with Daniel C. Bridge – The 2023 Insurance Professional of the Year

Daniel Bridge is Board Chair, President, and CEO of Vermont Mutual Insurance Group

Making The Leap From Corporate to Entrepreneur: Nadeen Vella On Building NaVella Insurance From Scratch

Making The Leap From Corporate to Entrepreneur: Nadeen Vella On Building NaVella Insurance From Scratch

Our latest Agency Interview is with Nadeen Vella, the founder and owner of a virtual scratch independent agency.

View All

InsurOp-Eds

Agency Checklists, MA Insurance News, Mass. Insurance News

Mass. Agent Op-Ed: My Volunteer Hurricane Relief Work After Hurricane Harvey

By AC Editor

Agency Checklists, MA Insurance News, Mass. Insurance News, Micromobility, Bird Scooters, Insurance and scooters

InsurOp-Ed: The Scooter Craze and Insurance

By AC Editor

Surround Insurance's Kate Terry

Insur OpEd: Four Ways To Improve Your Agency’s Digital Image In No Time At All

By AC Editor

InsurOp-Ed: The Invisible But Potentially Catastrophic Homeowners Exclusion That’s Not An Exclusion

By Bill Wilson

View All

In Memoriam

Smiling older man with short hair wearing a black zip-front pullover, seated indoors at a table.

In Memoriam: Robert Pangione, 1935-2026

Mr. Haskell was a second-generation independent agent owner of the former Haskell Insurance Agency

In Memoriam: Patrick J. “P.J.” Haskell, 1966-2026

Mr. DeWolfe retired as Vice President of the Appleby & Wyman Insurance Agency

In Memoriam: Edward R. DeWolfe, 1940-2026

Footer

Contact us

We offer a variety of ways to get help promote your company or product.

Announcements
Email Sponsorships
Partnerships
Custom Collaborations

*Affiliate Disclosure

Please note that any of Agency Checklists’ articles might contain one or more affiliate links. This means that any subsequent purchase resulting from these links may result in a commission for us, but at no additional cost to you. For example, as an Amazon Associate, Agency Checklists earns a commission from all qualifying purchases. By working with affiliates we can continue to keep Agency Checklists subscription free. Thank you for your support.

Explore Our Archives

Copyright © 2026 · Agency Checklists · All rights reserved.

Loading Comments...