Tessco, LLC, a wireless connectivity products distributor headquartered in Hunt Valley, Maryland, notified affected individuals of a data security incident involving personal information, including information belonging to minor dependents of employees or customers. Companies that maintain sensitive personal records, including information about children, carry a heightened responsibility to safeguard that data, and when an incident like this occurs, families deserve a clear explanation of what happened and what steps they can take next.
Tessco’s Data Breach Investigation
According to security researchers who monitor dark web and ransomware-related activity, a ransomware group calling itself PayoutsKing claimed responsibility for a cyberattack against Tessco around April 2026, alleging the exfiltration and encryption of a substantial volume of company data. Public reporting on the incident, which has not been officially confirmed in detail by Tessco itself, has suggested the exposed data may have included personal information such as names, addresses, phone numbers, email addresses, dates of birth, and Social Security numbers for a large number of individuals, in addition to business records. As of this writing, Tessco has not published a detailed public statement confirming the specific scope reported by outside researchers.
Consistent with that reporting, Tessco has since begun formally notifying affected individuals under state data breach notification laws, including a notice sent to Massachusetts residents specifically informing parents and guardians that some of their minor child’s information may have been involved in the event. Tessco is offering complimentary access to Experian IdentityWorks monitoring services for minors for a period of 24 months as a precaution.
Distributors and technology vendors like Tessco are frequent targets for ransomware groups because they often maintain large volumes of customer, vendor, and personnel records that can be resold or leveraged for further attacks. When an incident affects information belonging to minors, the risk profile is different than for adults, since fraudulent use of a child’s Social Security number can go undetected for years before the child reaches an age where they would apply for credit themselves.
Due to requirements imposed by Massachusetts law, Tessco has stated it is unable to provide further details about the precise nature of the incident in its notification letters. This kind of limited public disclosure is common in early-stage breach notifications, particularly where litigation, ongoing investigation, or state law constraints limit what a company can say beyond confirming that an incident occurred and offering remediation services.
Affected families are encouraged to enroll promptly in any monitoring services offered, periodically check whether a credit file has been opened in a minor’s name, and remain alert to phishing attempts that may reference this incident, since scammers frequently use news of a data breach to make follow-up scams appear more credible.
When Did This Breach Occur?
Public reporting indicates the underlying security incident was first detected around April 20, 2026, with information about the incident becoming more widely known through security researchers by mid-May 2026. Tessco’s formal notification letters to affected Massachusetts residents, including the notice concerning minor dependents, were dated September 16, 2026.
What Information Was Breached?
Tessco’s own notification letter to Massachusetts residents states that information belonging to the recipient’s minor child may have been involved but does not specify which data elements were affected for that individual due to state law restrictions on the letter’s content. Separately, outside security researchers monitoring dark web activity have reported that a broader set of data, including names, addresses, phone numbers, email addresses, dates of birth, and Social Security numbers, may have been exposed in the underlying incident, though this has not been officially confirmed by Tessco in the same level of detail.
What You Can Do
Tessco is offering affected minors 24 months of complimentary credit monitoring and identity restoration services through Experian IdentityWorks. Consider taking the following steps:
- Enroll your minor dependent in the complimentary Experian IdentityWorks monitoring services before the enrollment deadline listed in your notification letter.
- Periodically check whether a credit file exists in your minor’s name using each credit bureau’s minor-specific request process.
- Consider placing a security freeze on your minor’s credit file if one exists.
- Be cautious of unsolicited calls, texts, or emails referencing this breach, which may be phishing attempts.
File a Data Breach Lawsuit Against Tessco
If you or your minor dependent received a notification letter from Tessco or believe your information may have been involved in this event, you may have legal options available to you.
Contact us at Class Action U, where we’ll connect you with a lawyer skilled in class action lawsuits. If you’ve been contacted about this breach, received notice, or discovered you were impacted, fill out our quick, easy, and secure form to sign up. There is no cost to reach out to our legal partner and no obligation after speaking with someone from our team.