Aligned Wealth Group Data Breach Exposes Names and Social Security Numbers

Finance data breach illustration
Breach Discovery: June 2026Breach Notification: July 2026

What Happened in the Aligned Wealth Group Data Breach?

Aligned Wealth Group, a financial planning and investment management firm based in Columbia, Missouri, is notifying clients about a cybersecurity incident that exposed their personal records. The firm helps individuals and families with retirement planning and investment strategy. Because of this work, it stores detailed financial profiles on the people it serves.

According to a notice the firm filed with the Nebraska Attorney General’s Office, an unauthorized party gained access to its network in April 2026. The company has not disclosed how the intruder broke in. As a result, the exact method behind the Aligned Wealth Group data breach remains unclear to the public.

Aligned Wealth Group says it did not discover the intrusion until roughly six weeks after it occurred. Once the firm identified the incident, it launched an internal review to determine which systems were touched and which clients were affected. This kind of investigation typically involves outside forensic specialists and legal counsel working together to assess the scope of exposure.

After completing that review, the company began mailing written notification letters to affected individuals in July 2026. That gap between discovery and notice, spanning several weeks, is common in breach cases of this size. However, it still means that some clients went months without knowing their information was at risk.

Who was affected?

The people affected by this incident are clients of Aligned Wealth Group who entrusted the firm with financial planning, investment management, or retirement account services. Because wealth management clients often hold significant assets, this population may be especially attractive to identity thieves and fraud rings.

Aligned Wealth Group has not publicly released the total number of individuals affected. The Nebraska filing referenced in this case is currently the only regulatory notice publicly available describing the breach. It is possible the firm has filed or will file similar notices in other states, since clients of a wealth management firm are not necessarily limited to one geographic area.

What Information Was Potentially Exposed?

Aligned Wealth Group has not released a complete, itemized list of every data element touched during the incident. Based on the nature of its business and the type of notice it filed, the exposed records likely include a combination of identifying and financial details tied to client accounts.

  • Full names
  • Social Security numbers
  • Other personal information maintained in client files

Clients who receive a direct letter from the firm should read it closely. That notice should specify exactly which pieces of their information were involved in this particular case.

When Social Security numbers are exposed alongside a person’s name, the risk extends well beyond a single account. Criminals can use this combination to open new credit cards, apply for loans, or file fraudulent tax returns in a victim’s name. Because financial advisory clients often have substantial assets, they may also become targets for more sophisticated, personalized scams.

In addition to direct financial fraud, exposed data can fuel convincing phishing attempts. Someone with access to a victim’s name and account history can craft emails or phone calls that appear to come from a trusted source. This makes it harder for victims to spot fraud before damage occurs, so awareness becomes an ongoing responsibility rather than a one-time task.

What is the company doing?

After discovering the intrusion, Aligned Wealth Group opened an investigation into what happened and which client records were involved. The firm then filed a notice with the Nebraska Attorney General’s Office describing the incident, as required under state breach notification law.

Following that filing, the company began sending written letters to affected clients in July 2026. These notices are intended to explain what data was involved and outline any protective resources being made available. The firm has not publicly detailed additional technical safeguards it may be putting in place going forward, though such steps are typical after an intrusion of this kind.

What Should Affected Individuals Do?

Monitor Your Credit Reports

Anyone who received a notice from Aligned Wealth Group should request copies of their credit reports from all three major bureaus. Reviewing these reports lets you spot unfamiliar accounts or credit inquiries before they cause lasting damage.

Because Social Security numbers can be used to open new lines of credit, checking your reports regularly over the coming months is important. Consider setting a recurring reminder, since fraudulent activity does not always appear immediately after a breach becomes public.

Place a Fraud Alert or Credit Freeze

If your Social Security number was part of this incident, placing a fraud alert or a full credit freeze with Equifax, Experian, and TransUnion adds an extra layer of protection. A freeze makes it much harder for anyone to open new credit in your name without your explicit approval.

Setting up a freeze is free and can typically be done online or by phone. While it may add a small extra step when you apply for credit yourself, that inconvenience is minor compared to the effort required to recover from identity theft.

Watch for Phishing Attempts

Because this breach involved personal and financial information, scammers may try to use those details to make fraudulent messages look legitimate. Be cautious of unexpected calls, texts, or emails referencing Aligned Wealth Group or your account status.

Never click links or share login credentials in response to an unsolicited message. Instead, contact the firm directly using a phone number or website you already know is legitimate, rather than one provided in a suspicious message.

Review Financial and Investment Accounts Closely

Given that Aligned Wealth Group manages investment and retirement accounts, affected clients should review those statements alongside their regular bank and credit card activity. Look for any unauthorized transactions, unfamiliar withdrawals, or unexpected changes to account settings.

If you notice anything unusual, report it to Aligned Wealth Group and your financial institution right away. Acting quickly can limit the damage and may also strengthen any later claim for compensation tied to this incident.

Consider Speaking With a Data Breach Attorney

If you received a notification letter from Aligned Wealth Group, you may have legal options worth exploring. Firms that store sensitive financial data are expected to protect it, and when that duty is not met, affected clients can face years of ongoing risk.

Consulting with a data breach attorney costs nothing in most cases and can help clarify whether you qualify to join a claim. An attorney can also help you understand what documentation to preserve, such as the notification letter itself and any evidence of suspicious account activity.



Related Data Breaches

Check other recent data breach notifications →