Ericsson discloses data breach, employee and customer data exposed


The US branch of telecom provider Ericsson has revealed that a “data security incident” occurred at one of its service providers.

Key takeaways:

According to a data breach notification letter addressed to the Attorney General of the State of California, Ericsson’s service provider detected unauthorized access on April 28th, 2025.

ADVERTISEMENT

Immediately after the discovery, the service provider initiated an investigation into the matter, with the assistance of external cybersecurity specialists. The FBI was also notified of the incident. Lastly, the service provider implemented additional security measures to minimize the risk of recurrence.

As part of the investigation, external data specialists launched a comprehensive review of the incident. This analysis was completed on February 23rd, 2026.

Check if your data has been leaked

Find out if your email, phone number or related personal information might have fallen into the wrong hands.
18,611,353,922
Breached accounts
36,030
Breached websites

The researchers discovered that some of the service provider’s files may have been accessed between April 17th, 2025, and April 22nd, 2025. The personal information potentially affected by this incident varied by individual but may have included their first and last name and Social Security number.

According to a separate filing with the Texas Attorney General, the exposed information also included dates of birth, driver’s license numbers, government-issued ID numbers, financial information, and medical information.

jurgita justinasv vilius Niamh Ancell BW Ann-Marie Corving profile picture
Don't miss our latest stories on Google News. Add us as your Preferred Source on Google

Ericsson has arranged to provide access to credit monitoring services for 12 months through IDX to individuals whose personal information was potentially affected by this incident, free of charge.

In addition, the telecom manufacturer is providing impacted individuals with guidance on how to better protect against identity theft and fraud, including advising individuals to report any suspected incidents of identity theft or fraud to their credit card company or bank.

ADVERTISEMENT

Although the data breach notification letter doesn’t say how many victims were affected by the incident, a letter to the Attorney General of the State of Maine claims that 15,661 employees and customers have been impacted.

As of writing, no ransomware group has claimed responsibility for the data breach.


Unlock more exclusive Cybernews content on YouTube.