The breach occurred on February 15, 2026, when a threat actor accessed Advantest's network and deployed ransomware. At the time, the company stated it could not determine whether customer or employee data had been compromised. In a notification to California's Office of the Attorney General, Advantest now says the attacker extracted personally identifiable information (PII).
Exposed data includes contact information, dates of birth, Social Security numbers, national ID numbers, driver's license numbers, passport numbers, medical information, financial information, and other ID numbers. It remains unclear whether the compromised data belongs to customers, employees, partners, or a combination.
Advantest reported it has no evidence that the stolen data has been leaked or misused, but it acknowledged an elevated risk of identity theft and fraud. To mitigate this, the company is offering affected individuals 18 months of free identity theft, credit, and web monitoring services from Kroll. Recipients have until January 4, 2027, to activate the offer.
BleepingComputer noted that no ransomware group has publicly claimed responsibility for the attack. Advantest did not respond to questions about the number of individuals impacted.