Advantest, a semiconductor test equipment maker, has notified individuals of a data breach tied to a February 2026 cybersecurity incident. Here is what the company and regulators have made public so far.
Advantest’s Data Breach Investigation
Advantest is a Tokyo-based supplier of automatic test and measurement equipment used to design and produce semiconductors, and its U.S. subsidiary, Advantest America, Inc., has now filed notice of a data breach with state regulators. The Vermont Attorney General’s public listing shows the filing was received on October 5, 2026 and that 8 Vermont residents were affected. A sample notice letter was also filed with the California Attorney General. The sources we reviewed do not give a total number of people affected across all states.
According to the notice letter, Advantest became aware in February 2026 of a cybersecurity incident in which an unauthorized third party accessed company systems and extracted some data from its servers. The letter says personal information belonging to the recipient was among the data taken. The company’s own public statement on February 19, 2026 said it was responding to an incident involving ransomware, and press coverage of that statement reported that the company detected unusual activity in its IT environment on February 15, 2026. At that point the company said it had not yet determined whether customer or employee data was involved. The October notice is the first public sign we found that the review of the affected data was completed and that individuals were being notified.
The company says it took potentially affected systems offline, brought in leading outside cybersecurity firms, notified law enforcement and the relevant authorities, and added security measures and monitoring. It says the incident was quickly contained and its network was restored. The letter also states that the company has no information suggesting the data has been publicly disclosed or misused, while acknowledging that the incident may have placed recipients at increased risk of identity theft or fraud. Advantest is offering 18 months of free credit and web monitoring through Kroll, and recipients have until January 4, 2027 to activate it.
The sample letter on file is a mail-merge template rather than a completed copy sent to a specific person, so the details that differ from person to person are left as blank placeholders. That includes the recipient’s name and address, the activation code and, importantly, which types of personal information were involved for that individual. For that reason we cannot tell you exactly what was exposed for any one recipient. What the template does show is the range of categories the company reviewed, which is covered in the section on the information involved below. Each person’s own letter is the authoritative source for what applies to them.
Advantest is a global company with customers and employees in many countries, which helps explain why a single incident can lead to filings in several U.S. states, each with its own count of residents. A small Vermont figure does not indicate a small incident overall. Regulators publish only the number of their own residents, so the real total is likely larger than any one state’s listing. The letter also notes that other individuals will separately receive their own personalized notices, which is consistent with a broad review of affected records.
Cybersecurity incidents at large technology and manufacturing companies are a common source of identity-theft risk because their systems can hold both business records and detailed personnel files. Employee and applicant records, in particular, may include identification numbers and financial details that criminals can use to open accounts, file false tax returns or build convincing phishing messages. This is general industry context, not a statement about what any particular file at Advantest contained. Anyone who receives the notice should read it closely, keep it, and enroll in the monitoring offer before the deadline, since the credit monitoring service requires an adult with established U.S. credit and a Social Security number to use it.
If you believe your information may have been held by Advantest, for example as a current or former employee, job applicant or contractor, but you have not received a letter, that does not necessarily mean you were unaffected. Notices are generally mailed to the last address on file, and people who have moved can receive them late. Contacting the company’s support center listed on the notice is a reasonable first step, and keeping records of any suspicious activity will help if you need to dispute fraud later. Because the incident involved a confirmed extraction of data, it is sensible to stay alert for fraud attempts even if no misuse has been reported so far.
When Did This Breach Occur?
The notice letter says Advantest became aware of the incident in February 2026, and press coverage of the company’s announcement reported that unusual activity was detected on February 15, 2026. The company publicly acknowledged a cybersecurity incident on February 19, 2026. Its breach notice was filed with the Vermont Attorney General on October 5, 2026, which is the date the state’s public listing shows.
What Information Was Breached?
The notice says an unauthorized party extracted data from Advantest servers that included personal information about the recipient. The sample letter is a template, and it lists categories that may apply to an individual: contact information, date of birth, Social Security number, national ID number, driver’s license, passport number, medical information, financial information and other ID numbers. Which of these apply differs from person to person, so check your own letter for the specific types of information listed for you.
What You Can Do
If you receive a notice from Advantest, consider these steps:
- Activate the free Kroll credit and web monitoring by January 4, 2027, using the instructions in your letter.
- Check your credit reports for free at annualcreditreport.com, and consider a fraud alert or credit freeze with Equifax, Experian and TransUnion.
- Review bank and card statements and report any transaction you do not recognize to your financial institution right away.
- Be cautious with unexpected emails, texts or calls that mention the breach, and never send money or personal details to an unsolicited contact.
- Use unique passwords with two-factor authentication where possible, and report suspected identity theft to the Federal Trade Commission at identitytheft.gov and to your state Attorney General.
File a Data Breach Lawsuit Against Advantest
If you received a notice that your personal information was involved in the Advantest data breach, you may have legal options. Companies that collect sensitive identification, financial and medical information are expected to safeguard it, and a lawsuit can help hold them accountable when an unauthorized party is able to extract that data.
Contact us at Class Action U, where we’ll connect you with a lawyer skilled in class action lawsuits. If you’ve been contacted about this breach, received notice, or discovered you were impacted, fill out our quick, easy, and secure form to sign up. There is no cost to reach out to our legal partner and no obligation after speaking with someone from our team.