ADT, Inc. Data Breach Exposes Customer Personal Information

Other Commercial data breach illustration
Breach Discovery: Not Publicly DisclosedBreach Notification: July 2026

ADT, Inc. notified the Washington State Attorney General in July 2026 about a data breach involving customer personal information. The exact number of affected individuals and full scope of exposed data have not been publicly disclosed. Affected customers should monitor their credit reports, watch for phishing attempts impersonating ADT, and review their ADT account for unauthorized changes.

CompanyADT, Inc.
IndustryOther Commercial
Data Types ExposedFull Names, Contact Information, Account Information, Other Personal Identifiers
People AffectedNot Publicly Disclosed
Attack MethodUnspecified/Unauthorized Access
Regulators NotifiedWashington State Attorney General

What Happened in the ADT Data Breach?

ADT, Inc. recently disclosed a data breach that may have compromised personal information belonging to its customers. The company, known for providing home and business security systems, filed a formal notification about the incident with the Washington State Attorney General in July 2026.

According to the filing, ADT identified unauthorized activity affecting systems that stored customer data. The exact discovery date has not been publicly disclosed. However, the company moved to notify state regulators once it confirmed that personal information may have been involved.

Because many details remain limited, the full scope of the attack method is not yet clear from public records. In response, ADT appears to have launched an internal review to determine what happened and which records were affected. This type of investigation typically involves forensic specialists who examine network logs and system activity to trace how the intrusion occurred.

As a result of this process, ADT was able to compile enough information to satisfy its legal notification obligations. Companies in this position often continue investigating even after initial notices go out. Additional details could still emerge as ADT completes its review.

Who was affected?

The ADT data breach appears to primarily affect the company’s customers. Because ADT provides security monitoring services to millions of residential and commercial clients across the United States, the potential pool of affected individuals could be broad.

The exact number of people affected has not been publicly disclosed. This means the scope could range from a small subset of customers to a much larger group, depending on which systems were involved.

It also remains unclear whether employee data was included in the breach. In addition, the geographic reach of the incident has not been specified beyond the fact that Washington residents were affected, since that is the state whose Attorney General received the notification.

Given ADT’s nationwide customer base, individuals in other states may have also been notified separately. Anyone who has ever used ADT’s services should consider themselves potentially affected until more specific information becomes available.

What Information Was Potentially Exposed?

The notification filed with Washington State regulators confirms that customer personal information was involved in this breach. However, the filing does not provide an exhaustive public list of every data category affected.

Based on the nature of ADT’s business and the type of notification filed, the following categories of information are typically at risk in breaches involving security service providers:

  • Full names
  • Contact information such as addresses, phone numbers, or email addresses
  • Account information related to ADT security services
  • Other personal identifiers tied to customer accounts

Even when only basic contact and account details are exposed, the risk to consumers should not be underestimated. For example, scammers often use this kind of information to craft convincing phishing emails or phone calls that impersonate a trusted company like ADT.

Because ADT customers already trust the company with home security, criminals could exploit that trust. This means fraudsters may pose as ADT representatives to trick victims into revealing more sensitive data, such as payment details or login credentials. As a result, vigilance is essential even when the exposed data seems limited.

What is the company doing?

In response to the breach, ADT took steps to investigate the incident and determine its scope. The company then filed the required notification with the Washington State Attorney General to comply with state breach notification laws.

ADT also filed formal notification with the Washington State Attorney General, as confirmed by public regulatory records. This filing is a standard legal requirement when a company determines that residents of a state may have been affected by unauthorized access to personal data.

Beyond the regulatory filing, further remediation details have not been publicly disclosed. Companies in similar situations often strengthen internal security controls, monitor for further suspicious activity, and offer guidance to affected customers. It is likely that ADT will continue to update its notification as more information becomes available.

What Should Affected Individuals Do?

Monitor Your Credit Reports

Affected individuals should regularly check their credit reports for signs of unauthorized activity. Because personal information can be used to open new accounts, spotting unfamiliar entries early can prevent larger financial damage.

You can request a free credit report from each of the three major bureaus once a year. In addition, consider spacing out these requests throughout the year so you have ongoing visibility into your credit file.

Watch for Phishing Attempts

Since ADT customer information may have been exposed, individuals should be cautious of unexpected emails, texts, or phone calls claiming to be from ADT. Scammers often use real company names to appear legitimate.

Never click on links or share personal details in response to unsolicited messages. Instead, contact ADT directly through its official website or customer service number to verify any communication you receive.

Consider a Fraud Alert or Credit Freeze

If you believe your personal information was exposed, placing a fraud alert on your credit file can help. This step requires creditors to take extra verification measures before opening new accounts in your name.

For stronger protection, you can also request a credit freeze, which restricts access to your credit file entirely. Although this adds a step when you apply for new credit yourself, it significantly reduces the risk of identity thieves opening accounts using your information.

Review Your ADT Account and Billing Statements

Because this breach involves a security services provider, affected customers should review their ADT account details closely. Look for any unauthorized changes to account settings, contact information, or payment methods.

You should also review recent billing statements tied to your ADT account. If you notice unfamiliar charges or account changes, contact ADT and your financial institution right away to report the issue.

Seek Guidance if You Suspect Harm

If you experience financial loss, identity theft, or ongoing suspicious activity after this breach, it may help to speak with a data breach attorney. A free case evaluation can clarify whether you qualify for compensation.

Attorneys who focus on data breach cases can also help you understand your legal options. This is especially useful if the investigation reveals that sensitive information beyond basic contact details was involved.



More Information

Official data breach notification report (PDF) from Washington State Attorney General

Related Data Breaches

See the latest data breaches we're tracking →