▼
Allegations Only · No Settlement Yet
This article describes class action complaints. The statements below are unproven
allegations. Live Nation Entertainment, Frontline Technologies Group and Saber Healthcare have
not been found liable, there is no certified class in any of the cases, and there is nothing to
claim at this time. This page is informational and is not legal advice.
Three companies sent data breach notices between late September and the first days of October 2026, and each was sued within days. Twelve lawsuits were filed against the three companies in federal court between September 29 and October 7: three against Live Nation Entertainment in Los Angeles, four against Frontline Technologies Group, the company behind the Frontline Education school software, in Philadelphia, and five against Saber Healthcare in Cleveland. Ten of them are proposed class actions whose complaints, or dockets, tie them to these breaches. The other two, one against Frontline and one against Saber, were filed the same week, but their complaints are not yet on the public docket.
The breaches are unrelated to each other. What they share is the kind of data involved. In all three, the notices or complaints list Social Security numbers, and several of the people suing describe themselves as employees rather than customers: two former Live Nation employees, two plaintiffs who say they formerly worked for Frontline, and a former Saber employee who sued alongside Saber patients.
Every case is at the first step. The complaints make allegations about each company's security practices that no court has tested, no class has been certified, and none of the companies has published a nationwide count of the people affected.
Free settlement alerts
Get notified when new class actions open to claims
Join thousands of readers who get the latest class action settlements you may qualify for — delivered straight to your inbox.
Status
Complaints filed · No class certified
Filed September 29 – October 7, 2026 in C.D. Cal., E.D. Pa. and N.D. Ohio · two complaints not yet public
Companies Sued
Live Nation (3) · Frontline Education (4) · Saber Healthcare (5)
Three separate breaches · no nationwide victim count published for any of them
Data Involved
Social Security numbers in all three
Plus government ID numbers and health or medical information at Live Nation and Saber, and contact details at Frontline
Can I Claim?
No — nothing to claim yet
No settlement, no claim form and no deadline in any of the cases
Live Nation reported a data breach to the Vermont Attorney General on October 1, 2026. The complaints, which rely on that filing, say the exposed information included Social Security numbers, government ID numbers and health records. Billboard reported that the Vermont filing listed two affected Vermont residents and that no other state had posted a Live Nation notice at the time. Live Nation has not published a nationwide count, a date for the breach, or a statement on whether the people affected were customers or employees.
Three complaints followed in the U.S. District Court for the Central District of California, one on October 6 and two on October 7. They are nearly identical in structure and bring claims for negligence, breach of implied contract and unjust enrichment, seeking damages, security improvements and paid credit monitoring. In two of them, the named plaintiff says they are a former Live Nation employee who gave their information to the company as part of that job. The third describes giving information in connection with services from the company, without saying more. All three say the plaintiff learned of the breach from an article online rather than from a letter.
This is a different incident from the 2024 Ticketmaster breach, in which customer records held in a Snowflake cloud database were taken. Claims over that breach are consolidated in a separate multidistrict litigation in Montana, covered in OCA's Ticketmaster Snowflake data breach lawsuit page. The data described in the 2026 filing, Social Security numbers and health records, is not the kind of information a ticketing account holds, which is part of why the employee question matters for who the class turns out to be.
Frontline Technologies Group, based in Pennsylvania, sells administration and workforce-management software to K-12 school districts under the Frontline Education name. The complaints describe it as serving more than 4,000 districts and over a million teachers.
According to its notice letters, Frontline's security team identified a vulnerability on August 14, 2026, in a third-party software product the company uses, and that flaw allowed unauthorized access to part of its environment. Frontline has not named the product or said when the access began. BleepingComputer, which obtained a notice sent to one district, reported that the exposed data included employees' Social Security numbers, email addresses and physical addresses, that one district's notice covered all of its employees, and that a district administrator shared a notice listing 1,210 affected employees at one district. The total number of districts and people involved has not been disclosed.
Notices began reaching districts around October 1. Frontline told districts it would send letters to affected employees, and to state attorneys general, unless a district opted out by October 16, and it is offering adults two years of credit monitoring and identity protection through TransUnion. Four complaints were filed in the U.S. District Court for the Eastern District of Pennsylvania between October 5 and October 7, split between two judges. The three complaints on the public docket allege negligence, negligence per se, unjust enrichment and breach of implied contract, and one adds breach of confidence.
Frontline's notices describe the people affected as employees of client school districts. The plaintiffs in two of the complaints say instead that they are former Frontline employees who gave their information as a condition of working there, and a third complaint does not say how its plaintiff is connected to the company. Which groups Frontline's systems actually exposed is a question the company's state filings should answer.
The pattern is a familiar one in education technology: a single vendor holding records for thousands of districts becomes a single point of exposure. OCA has covered the same dynamic in the Instructure Canvas data breach, which reached students and staff through a learning platform rather than an HR system.
Saber Healthcare Group, based in Beachwood, Ohio, operates skilled nursing, long-term care and rehabilitation facilities in five states. Its notice, dated September 25, 2026, says it found unauthorized activity in its computer systems on July 27, after an outage affecting some internal and external systems, and that an outside party had encrypted a small portion of its files. Saber says it restored the files from backups and that it found no evidence its electronic medical record database, which another provider hosts, was accessed, changed or copied.
Saber finished reviewing the affected files on August 19, 2026. The information involved varies by person and may include name together with date of birth, driver's license or state ID number, health insurance information, medical information, financial account information, passport number or Social Security number. Saber says it has seen no evidence of misuse and is offering free credit monitoring and identity protection. It has not published a total count; the HIPAA Journal reported that disclosures to state attorneys general accounted for a little over 3,000 people, which covers only the states that have posted figures.
Five complaints have been filed in the U.S. District Court for the Northern District of Ohio, the first two on September 29 and the most recent on October 7. The earlier complaints were brought on behalf of current and former patients; one later complaint joins a former employee with a former patient as plaintiffs. One filing tells the court it may be related to the first case, a common first step toward having overlapping suits handled together.
Nursing-home breaches tend to draw suits quickly because the records combine identity data with medical and insurance details. OCA tracks similar healthcare cases, including the Kettering Health ransomware lawsuit and the Change Healthcare data breach lawsuits.
Breach complaints filed this soon after a notice are largely built from the notice itself. In the complaints available on the public docket, the company-specific facts fill a few paragraphs; the rest of each complaint describes the general risks of identity theft, federal data-security guidance and the value of stolen personal information. That is typical at this stage, and it means the complaints add little about how each breach happened beyond what the companies have already disclosed.
The legal claims are also close to uniform: negligence, often paired with negligence per se based on the Federal Trade Commission Act, breach of an implied contract to protect the data, and unjust enrichment. The relief sought is damages, credit and identity monitoring paid for by the company, and court-ordered changes to its security practices.
The employee cases raise a question consumer cases do not. An employer collects Social Security numbers and similar records because tax, payroll and benefits rules require them, so the implied-contract theory rests on the employment relationship rather than on a purchase. Courts have handled employee data breach cases before, and several have settled, but the theory has to be argued on those facts.
The first likely step in each group is consolidation. When several class actions over the same breach sit in the same federal district, the court commonly combines them before one judge and appoints a single set of lawyers to lead the case. All three Live Nation complaints are in the Central District of California, all four Frontline complaints are in the Eastern District of Pennsylvania, and all five Saber complaints are in the Northern District of Ohio, so each group is positioned for that step.
After consolidation, plaintiffs typically file one amended complaint and the company moves to dismiss it. In breach cases that motion often turns on whether people whose data was exposed, but who have not yet had it misused, have suffered the kind of concrete harm federal courts require. Cases that survive can take a year or more to reach a settlement, and many end without one.
Three disclosures would change this picture: a nationwide count from any of the companies, a clear statement from Live Nation about whether customers were affected, and Frontline's filings with state attorneys general, which it said it would make on districts' behalf. This page will be updated as those arrive. Current open breach settlements are listed on OCA's data breach settlements page.
Is the 2026 Live Nation data breach the same as the Ticketmaster breach?
No. The 2026 incident was reported to the Vermont Attorney General on October 1, 2026, and the complaints describe Social Security numbers, government ID numbers and health records. The Ticketmaster breach was a 2024 incident involving a Snowflake-hosted customer database, and claims over it are proceeding separately in a federal multidistrict litigation in Montana.
Is there a settlement or claim form for the Live Nation, Frontline or Saber Healthcare data breach?
No. As of October 8, 2026, every case was at the complaint stage. No class has been certified, no settlement has been reached, and there is no claim form or deadline in any of them.
How many people were affected by these three data breaches?
None of the three companies has published a nationwide total. Live Nation's only public filing so far is with the Vermont Attorney General, which covers Vermont residents alone. Frontline has not said how many school districts or employees were involved, though one district administrator shared a notice listing 1,210 affected employees. Saber Healthcare's state filings account for a little over 3,000 people, a figure that covers only the states that have posted counts.
What information was exposed in the Frontline Education breach?
According to the notice letters and the complaints, the exposed data belonged to employees of client school districts and included Social Security numbers, email addresses and physical addresses. Frontline says the access came through a vulnerability in third-party software that its security team identified on August 14, 2026.
Why are there several lawsuits over the same data breach?
Different law firms often file separate complaints over the same breach within days of a notice. When overlapping cases sit in the same federal district, they are commonly consolidated before a single judge with one set of lead lawyers, and the case then proceeds as one.
Live Nation Entertainment (C.D. Cal.):
• Fraga v. Live Nation Entertainment, Inc., No. 2:26-cv-11655 — CourtListener docket
• Gosman v. Live Nation Entertainment, Inc., No. 2:26-cv-11664 — CourtListener docket
• Ramos v. Live Nation Entertainment, Inc., No. 2:26-cv-11678 — CourtListener docket
• Billboard — "Live Nation Discloses Recent Data Breach, Leading to Lawsuits"
• Vermont Attorney General — Security breach notices
Frontline Technologies Group (E.D. Pa.):
• Brooks v. Frontline Technologies Group LLC, No. 2:26-cv-07630 — CourtListener docket
• Shaw v. Frontline Technologies Group, LLC, No. 2:26-cv-07678 — CourtListener docket
• Steinman v. Frontline Technologies Group, LLC, No. 2:26-cv-07688 — CourtListener docket
• Grant v. Frontline Technologies Group LLC, No. 2:26-cv-07706 — CourtListener docket
• BleepingComputer — "Frontline Education breach exposes school district employee data"
Saber Healthcare (N.D. Ohio):
• Lackey v. Saber Healthcare Holdings, LLC, No. 1:26-cv-02546 — CourtListener docket
• Cowen v. Saber Healthcare Holdings, LLC, No. 1:26-cv-02556 — CourtListener docket
• Devine v. Saber Healthcare Holdings, LLC, No. 1:26-cv-02575 — CourtListener docket
• Knazek v. Saber Healthcare Group, L.L.C., No. 1:26-cv-02618 — CourtListener docket
• Mattera v. Saber Healthcare Holdings, LLC, No. 1:26-cv-02638 — CourtListener docket
• Saber Healthcare Group — "Notice of Data Incident" (September 25, 2026)
• The HIPAA Journal — "Data Breaches Announced by Saber Healthcare & Buchalter"
For more class actions keep scrolling below.
Status
Complaints filed — no class certified in any case
Live Nation Cases
3 · U.S. District Court, Central District of California · filed Oct. 6–7, 2026
Frontline Cases
4 · U.S. District Court, Eastern District of Pennsylvania · filed Oct. 5–7, 2026
Saber Cases
5 · U.S. District Court, Northern District of Ohio · filed Sept. 29–Oct. 7, 2026
First-Filed Cases
Fraga v. Live Nation Entertainment (2:26-cv-11655) · Brooks v. Frontline Technologies Group (2:26-cv-07630) · Lackey v. Saber Healthcare Holdings (1:26-cv-02546)
Settlement
None — nothing to claim