The Money Store Data Breach Exposes Sensitive Financial and Personal Information

Published: 21 September 2026
Finance data breach illustration
Breach Discovery: Not Publicly DisclosedBreach Notification: Not Publicly Disclosed

A ransomware group called Storm claims to have breached The Money Store, a New Jersey mortgage lender, potentially exposing borrowers’ Social Security numbers, financial account details, and loan documentation. The number of people affected has not been publicly disclosed. If you have applied for or held a mortgage with this lender, monitor your credit reports and consider placing a credit freeze immediately.

CompanyThe Money Store
IndustryFinance
Data Types ExposedFull Names and Contact Information, Social Security Numbers, Financial Account Information, Loan Application Details, Income and Employment Records, Property and Mortgage Documentation, Credit History Information
People AffectedNot Publicly Disclosed
Attack MethodRansomware
Regulators NotifiedNot Publicly Disclosed

Were you affected by this breach?

You may be owed compensation.

Data breach victims can recover money for identity-theft losses, out-of-pocket costs, wasted time, and the ongoing risk of fraud — usually with no upfront cost, and no fee unless you win.

Check if you qualify — free review

What Happened in the The Money Store Data Breach?

The Money Store, a mortgage lender based in Hamilton, New Jersey, has become the target of a ransomware attack. A threat actor group known as Storm has claimed responsibility for breaching the company’s network. This lender, which serves customers seeking home purchase, refinance, construction, and home equity loans, handles large volumes of sensitive borrower information as part of its daily operations.

Details about the exact timeline of the attack have not been publicly disclosed. However, ransomware groups like Storm typically gain access to a victim’s systems, extract data, and then threaten to publish or sell it unless a ransom is paid. This pattern suggests that the attackers may have infiltrated The Money Store’s network before demanding payment.

As a result of the claimed attack, The Money Store now faces the task of confirming the scope of any intrusion. Because mortgage lenders store extensive financial and identity records, an investigation would likely involve forensic specialists working to determine what systems were accessed. At this time, the company has not released additional public details about its investigation.

Who was affected?

The individuals affected by this incident likely include current and former customers of The Money Store who applied for or held mortgage products with the company. Given the nature of mortgage lending, this could include people who submitted loan applications, refinanced homes, or sought home equity financing.

The exact number of affected individuals has not been publicly disclosed. The Money Store operates with 201 to 500 employees, so employee records could also be part of the exposure. Because the company serves clients through a home financing process that requires detailed financial disclosures, the potential population affected could span a wide range of borrowers across multiple states.

What Information Was Potentially Exposed?

While a full list of compromised data has not been confirmed, mortgage lenders like The Money Store typically collect and store extensive personal and financial documentation from applicants. This means a breach of this kind could involve highly sensitive records tied directly to a person’s financial identity.

  • Full names and contact information
  • Social Security numbers
  • Financial account information
  • Loan application details
  • Income and employment records
  • Property and mortgage documentation
  • Credit history information

If this type of data was indeed accessed, affected individuals could face a heightened risk of identity theft. For example, criminals could use stolen Social Security numbers to open fraudulent credit accounts or file false tax returns. Because mortgage records often include income and employment history, this data can also make phishing attempts appear more convincing.

In addition, exposed financial account information could lead directly to unauthorized transactions. Someone with access to loan details and property records could also attempt mortgage fraud or impersonate a borrower during refinancing. As a result, affected individuals should treat any unexpected financial communication with caution during the months following this incident.

What is the company doing?

The Money Store has not publicly released a detailed statement outlining its full response to the claimed ransomware attack. However, organizations facing this type of incident typically begin by isolating affected systems and bringing in cybersecurity specialists to assess the damage. This early containment step helps prevent further unauthorized access while the investigation continues.

Going forward, affected individuals should watch for official notification letters from the company. These notices, when sent, typically explain what data was involved and what protective services, such as credit monitoring, may be offered. Because details of the incident are still emerging, individuals should rely only on verified communication directly from The Money Store rather than unsolicited calls or emails.

What Should Affected Individuals Do?

Monitor Your Credit Reports

Affected individuals should request a copy of their credit report from each of the three major credit bureaus. Reviewing these reports regularly can help you catch new accounts or inquiries that you did not authorize.

You are entitled to a free credit report from each bureau on a regular basis. Because early detection is critical, checking your reports every few months for the next year is a reasonable precaution after a mortgage-related data exposure.

Consider a Credit Freeze or Fraud Alert

Since Social Security numbers and financial account details may have been involved, placing a credit freeze with each credit bureau is a strong protective step. A freeze restricts access to your credit file, which makes it much harder for someone to open new credit in your name.

Alternatively, a fraud alert requires lenders to take extra steps to verify your identity before approving new credit. This option is less restrictive than a freeze but still provides a meaningful layer of protection. Either measure can reduce your exposure to identity theft following this type of breach.

Watch for Phishing and Impersonation Attempts

Because attackers often use stolen personal data to craft convincing scams, affected individuals should stay alert for suspicious emails, texts, or phone calls. These messages may reference real loan details to appear legitimate.

If you receive a message asking you to verify account information or click a link, avoid responding directly. Instead, contact The Money Store using a verified phone number or website to confirm whether the communication is legitimate.

Review Mortgage and Financial Statements Closely

Given that mortgage documentation may have been exposed, affected individuals should carefully review any statements related to their home loans. Look for unfamiliar charges, unauthorized account changes, or unexpected communications about your mortgage.

If anything appears unusual, contact your lender immediately. In addition, consider speaking with a data breach attorney to understand your rights and whether you may be eligible for compensation related to this incident.

Get a Free Case Review

Tell us how this breach affected you. A data breach attorney will review your situation at no cost and with no obligation — it takes about two minutes.



Related Data Breaches

Check other recent data breach notifications →