New Apostolic Church USA Data Breach Exposes Social Security Numbers

Non-profit data breach illustration
Breach Discovery: Not Publicly DisclosedBreach Notification: June 2026

What Happened in the New Apostolic Church USA Data Breach?

New Apostolic Church USA recently notified the Vermont Attorney General about a data breach that exposed sensitive personal information. The filing confirms that Social Security numbers were involved. This kind of notice is required when an organization determines that unauthorized parties may have accessed protected data.

The organization has not publicly released full details about how the breach occurred. However, the filing itself confirms that a security incident took place and that personal data was compromised. Because the notice specifically names Social Security numbers as an exposed category, this was not a minor technical glitch. It represents a genuine data exposure event.

At this time, the exact timeline of the intrusion has not been publicly disclosed. Organizations that file these notices typically do so after completing an internal review or forensic investigation. This process usually confirms which records were accessed and which individuals need to be notified. New Apostolic Church USA appears to have followed that standard path before submitting its notification to Vermont regulators.

Because the notification was filed with a state attorney general, it suggests the organization has already taken steps to assess the scope of the incident. As a result, affected individuals should expect to receive direct notice, if they have not already. Meanwhile, additional details may emerge as the investigation continues.

Who was affected?

The notification does not state a specific number of affected individuals. Therefore, the exact scope of this breach hasn’t been publicly disclosed. However, based on the nature of the organization, those affected likely include church members, congregants, or individuals whose personal records were held by the organization for administrative purposes.

Because New Apostolic Church USA operates as a religious organization, its records may include a wide range of individuals. This could include current members, former members, donors, or staff. Some of these individuals could be minors, particularly if the organization maintained family or household records that included children’s information.

The geographic scope of the affected population also hasn’t been publicly disclosed. Since the notice was filed in Vermont, at least some Vermont residents are involved. However, similar notices may have been filed in other states depending on where the organization’s members reside.

What Information Was Potentially Exposed?

The Vermont filing specifically identifies Social Security numbers as the category of data involved. This is one of the most sensitive types of personal information that can be exposed in a breach. Unlike a password, a Social Security number cannot simply be changed after exposure.

  • Social Security numbers

Because Social Security numbers were involved, affected individuals face a heightened risk of identity theft. Criminals can use a stolen Social Security number to open new credit accounts, file fraudulent tax returns, or apply for loans in someone else’s name. This type of fraud can take months to detect and even longer to fully resolve.

In addition, stolen Social Security numbers are often bundled with other personal details and sold on dark web marketplaces. This means the risk to affected individuals may not appear immediately. Instead, fraud attempts could surface weeks or even years after the initial breach, making ongoing vigilance essential.

What is the company doing?

New Apostolic Church USA responded by filing a formal breach notification with the Vermont Attorney General’s office. This step indicates the organization has acknowledged the incident and is complying with state data breach notification laws. Filing this notice is generally a required step once an organization confirms that personal data was compromised.

Beyond the filing itself, the organization has not publicly detailed additional remediation steps. Many organizations in this situation offer credit monitoring or identity protection services to affected individuals. However, whether New Apostolic Church USA is offering such services hasn’t been publicly disclosed in the available filing.

Affected individuals should watch for a direct notification letter, if they have not received one already. This letter typically outlines what happened, what information was involved, and what resources, if any, are being made available. In the meantime, individuals should take proactive steps on their own to protect their identity.

What Should Affected Individuals Do?

Monitor Your Credit Reports

Affected individuals should request a free copy of their credit report from each of the three major credit bureaus. Checking these reports regularly can help you spot unfamiliar accounts or inquiries early. This is one of the simplest and most effective ways to catch identity theft before it spirals.

You can access free weekly credit reports through AnnualCreditReport.com. Because early detection matters so much, consider spacing out your requests across the year. This way, you maintain consistent visibility into your credit activity rather than checking once and forgetting about it.

Consider a Credit Freeze or Fraud Alert

Because Social Security numbers were exposed, placing a credit freeze is a strong protective step. A credit freeze blocks new creditors from accessing your credit file, which makes it much harder for criminals to open accounts in your name. This protection is free and can be lifted temporarily whenever you need to apply for credit yourself.

Alternatively, a fraud alert is a lighter-touch option that requires lenders to verify your identity before extending credit. This alert typically lasts one year and can be renewed. Either option adds a meaningful layer of protection, so choose whichever fits your situation best.

Watch for Phishing Attempts

After a breach involving Social Security numbers, scammers often follow up with phishing emails, texts, or phone calls. These messages may pretend to be from New Apostolic Church USA, a bank, or a government agency. Be cautious of any message asking you to verify personal details or click a link.

Instead of clicking links in unexpected messages, go directly to the official website or call a verified phone number. This simple habit can prevent you from accidentally handing over sensitive information. Because scammers often create urgency, slow down and verify before acting.

File Taxes Early and Watch for Fraudulent Filings

Since Social Security numbers were exposed, tax-related identity theft is a real concern. Criminals can use a stolen Social Security number to file a fraudulent tax return and claim a refund before you do. Filing your taxes as early as possible reduces this window of opportunity.

If you ever receive a notice from the IRS about a return you didn’t file, act quickly. Contact the IRS Identity Protection Specialized Unit and consider requesting an Identity Protection PIN for future tax filings. This extra step adds another barrier against future fraud attempts.

Consult a Data Breach Attorney

If you received a notification letter from New Apostolic Church USA, it may be worth speaking with a data breach attorney. An attorney can help you understand whether you qualify for any compensation or legal remedy related to this incident. Many offer free initial consultations to review your situation.

Because breach notification laws vary by state, an attorney familiar with Vermont and federal requirements can clarify your options. This is especially useful if you experience financial harm connected to this breach. Acting sooner rather than later can help preserve your legal options.



More Information

Official data breach notification from Vermont Attorney General

Official data breach notification from Indiana Attorney General

Related Data Breaches

View the full list of tracked data breaches →