Wikoff Color Corporation, an ink and coatings manufacturer headquartered in Fort Mill, South Carolina, has notified the New Hampshire Attorney General of a data security incident affecting at least one New Hampshire resident. The breach occurred after an employee was targeted in a voice phishing, or vishing, scheme that gave an unauthorized third party access to internal company files. Businesses that collect and store Social Security numbers and other sensitive identifiers owe their employees, clients, and other affected individuals a duty to keep that information secure.
Wikoff Color’s Data Breach Investigation
According to the notification letter filed with the New Hampshire Attorney General, between June 26, 2026 and July 6, 2026, an unauthorized third party gained access to Wikoff’s internal systems and acquired certain files after conducting a vishing call targeting a Wikoff employee. Upon discovering the incident, Wikoff stated that it immediately began an investigation, hiring outside cybersecurity experts to help secure its network, systems, and data, and to determine the scope of the intrusion. The company also notified law enforcement.
Vishing attacks rely on social engineering rather than purely technical exploits, with an attacker impersonating a trusted contact, IT support staff, or a vendor over the phone to trick an employee into granting access or divulging credentials. This tactic has become increasingly common as organizations harden their email and network defenses, pushing attackers toward the human element instead. Manufacturing and industrial companies, which may have less mature cybersecurity training programs compared to sectors such as finance or healthcare, can be especially vulnerable to this style of attack.
Wikoff’s investigation determined that the files accessed by the unauthorized party contained at least one affected individual’s full name in combination with their date of birth and Social Security number, information that is considered highly sensitive because it can be used to open new credit accounts, file fraudulent tax returns, or otherwise assume a victim’s identity. The company stated that its review of the full scope of affected data was still ongoing at the time of the notification letter, and it committed to supplementing the notice if additional information became available.
The exposure of a Social Security number in combination with a full name and date of birth is considered one of the more serious categories of data breach, since this combination of data points is often enough for a bad actor to pass identity verification checks at banks, credit bureaus, and government agencies. Wikoff has stated it is providing 24 months of credit monitoring at no cost to affected individuals and is reviewing its internal security policies and procedures to help prevent a similar incident in the future.
When Did This Breach Occur?
The unauthorized access to Wikoff’s internal systems is reported to have occurred between June 26, 2026 and July 6, 2026. Wikoff notified the New Hampshire Attorney General of the incident on July 28, 2026, the same date it began sending written notice to the affected resident.
What Information Was Breached?
Wikoff’s investigation determined that the unauthorized third party obtained files containing the affected individual’s full name in combination with their date of birth and Social Security number. The company noted that its review of the incident was ongoing and that it would supplement the notice if additional information came to light.
What You Can Do
If you received a notification letter from Wikoff Color Corporation regarding this incident, consider taking the following steps:
- Enroll in the free 24-month credit monitoring service Wikoff has stated it is offering to affected individuals.
- Monitor your bank and credit card statements closely for any unauthorized or unfamiliar transactions.
- Consider placing a fraud alert or a security freeze on your credit file with each of the three major credit bureaus.
- Watch for signs of tax-related identity theft, such as an unexpected notice from the IRS about a return filed in your name.
- Report any suspected identity theft or fraud to local law enforcement, the Federal Trade Commission, or your state Attorney General’s office.
File a Data Breach Lawsuit Against Wikoff Color
If you received a notice from Wikoff Color Corporation about this data security incident, or you believe your Social Security number or other personal information was compromised as a result of this breach, you may have legal options available to you. Companies that fail to protect sensitive personal data can be held accountable for the resulting harm to affected individuals.
Contact us at Class Action U, where we’ll connect you with a lawyer skilled in class action lawsuits. If you’ve been contacted about this breach, received notice, or discovered you were impacted, fill out our quick, easy, and secure form to sign up. There is no cost to reach out to our legal partner and no obligation after speaking with someone from our team.