Service Provider

Industry

Cyberattack at Security Services Provider, Rockport Technology Group

December 18, 2025

Salem, New Hampshire-based services provider, Rockport Technology Group, Inc. suffered cyberattack where personally identifiable information from current of former employees ended up stolen in the hack.
“On or about December 18, 2025, we detected that we were the target of a data security incident,” the company said in a notice to victims of the attack. “An unauthorized third party attempted to infiltrate our computer network. Upon detecting the incident, we moved quickly to secure our network environment and engaged a specialized third party forensic incident response firm to assist with securing the network environment and determine the scope and extent of any potential unauthorized access of our systems.”
After an extensive investigation, which concluded on January 6, Rockport said it found some personal information may have ended up compromised in the attack. The attackers made off with the victims’ name and Social Security number.

read more

Cyberattack at Engineering Services Firm, KMS Solutions

November 27, 2025

Alexandria, Virginia-based systems engineering provider, KMS Solutions, LLC, suffered a cyberattack in late November where personally identifiable information ended up stolen in the hack.
“KMS Solutions recently identified suspicious system activity and promptly initiated an investigation,” the company said in a letter to victims. “As part of our investigation, we learned that certain information within our systems was subject to unauthorized access or acquisition between November 27, 2025 and December 7, 2025.”
Upon discovery of the incident, KMS hired a third-party specialists to assist with understanding the nature and scope of the activity.

read more

Cyberattack at MA Security Provider, LAN-TEL Communications

July 11, 2025

Norwood, Massachusetts-based communications and security provider, LAN-TEL Communications, Inc. suffered a cyberattack this past July and notice is now going out to victims of the hack.
The breach occurred July 11, when an external system suffered compromise through a hack attack. As it turns out, the situation ended up discovered over two months later on September 23.
The company sent out written notifications to victims of the attack on October 9, informing them of the breach and the potential risks associated with it.

read more

Cyberattack at Security Provider F5

August 9, 2025

Cybersecurity provider, F5 Inc. suffered a nation-state cyberattack where source code ended up exfiltrated from its networking product suite, BIG-IP, this past August and per Department of Justice approval, delayed notification of the hack until Wednesday.
“On August 9, 2025, F5, Inc. learned that a highly sophisticated nation-state threat actor had gained unauthorized access to certain company systems,” the company said in 8-K report to the Securities and Exchange Commission (SEC) filed Wednesday, October 15. “The company promptly activated its incident response processes, and has taken extensive actions to contain the threat actor. To support these activities, the company engaged leading external cybersecurity experts.”
In the SEC report, F5 said, “during the course of its investigation, the company determined that the threat actor maintained long-term, persistent access to certain F5 systems, including the BIG-IP product development environment and engineering knowledge management platform,” the company said. “Through this access, certain files were exfiltrated, some of which contained certain portions of the Company’s BIG-IP source code and information about undisclosed vulnerabilities that it was working on in BIG-IP.”

read more

Cyberattack at Cybersecurity, IT Provider, Business Integra Technology Solutions

August 23, 2025

Bethesda, Maryland-based IT and cybersecurity solution provider, Business Integra Technology Solutions, Inc., suffered a data breach where attackers made off with personally identifiable information.
Business Integra Technology Solutions, Inc. suffered a cyberattack in August, the company said in a notice to victims.
“On August 23, 2025, Business Integra experienced a network disruption and immediately began investigating with the assistance of independent cybersecurity experts,” the company said. “As a result of the investigation, we determined that certain files ended up potentially acquired without authorization.”

read more

Utility Productivity Provider Hit in Attack

July 11, 2025

Philadelphia, Pennsylvania-based Util-Assist Inc. suffered a cyberattack in July that had an “operational impact on a limited number of personnel and systems.”
“Util-Assist Inc. discovered the incident involving unauthorized access to its IT system.,” the company said in a notice to victims. “In response, Util-Assist immediately took measures to secure the IT system and launched an investigation.”
The investigation revealed an unauthorized actor accessed the system on July 11 where the attackers made off with personally identifiable information such as the victims’ name, Social Security number and bank account number used for direct deposit.

read more

Cyberattack at CA Security Firm, Petrusha Enterprises

June 30, 2025

Eureka, California-based Petrusha Enterprises, Inc. which does business as Advanced Security Systems suffered a cyberattack earlier this summer and the company found personally identifiable information ended up stolen from its network.
“On June 30, 2025, we detected that we were the target of a data security incident,” the company said in a letter to the victims of the attack. “An unauthorized third party attempted to infiltrate our computer network. Upon detecting the incident, we moved quickly to secure our network environment and launched an investigation to determine the scope and extent of any potential unauthorized access of our systems.”
Advanced Security said it conducted an extensive electronic discovery, which concluded on August 7. It found some personal information may have fallen into the hands of the intruders. Moreover, that information may have included the victim’s name, credit card number and CVV code.

read more

Cyberattack at Video Surveillance Firm, DTiQ Technologies

December 31, 2025

Marlborough, Massachusetts-based video surveillance firm DTiQ Technologies, Inc. suffered a cyberattack where threat actors were able to steal personally identifiable information.
“On January 12, 2025, we identified unusual activity in our network and immediately began an investigation,” the company said in a letter to its victims. “The investigation determined there was unauthorized access to a portion of our network between December 31, 2024 and January 12, 2025.”
The company then said it conducted a comprehensive review of the contents of its network to determine the type of information contained in the attack.

read more

Cyberattack at LA Security Firm, Custom Security Systems

August 6, 2024

Baton Rouge, Louisiana-based security provider, Custom Security Systems, Inc. suffered a cyberattack in August last year where personally identifiable information ended up stolen and after a prolonged investigation it is now informing victims of the attack.
“On or about August 6, 2024, Custom Security became aware of unauthorized activity on our computer network,” the company said in a letter to its victims. “Upon discovery, we immediately took action to address and investigate the event, which included contacting law enforcement and engaging third-party computer forensic specialists to assist with determining the nature and scope of the event.
After a thorough investigation, the company found certain information stored on its network was subject to unauthorized access for a period of time. It then started up a comprehensive and time-consuming review of the potentially impacted data in order to determine the type of information contained within the data and to whom that information related, the company said.

read more

Cyberattack at PA Security Firm, Vector Security

December 18, 2024

Warrendale, Pennsylvania-based security provider, Vector Security, Inc. suffered a cyberattack late last year where personally identifiable information ended up stolen and the company is now informing victims.
“Vector detected unauthorized activity in our information technology (IT) systems,” the company said in a letter to victims. “Upon discovering this activity, we immediately took protective actions to stop the unauthorized access, notified U.S. federal law enforcement, and launched an investigation with the assistance of leading cybersecurity specialists.”
The investigation indicated personal information may have been accessed by an unauthorized party as early as mid-December 2024. Moreover, the company said it discovered the attack December 18. At this time, Vectoer said it has no reason to believe any victim’s information ended up misused. Out of an abundance of caution, however, the company wanted to keep the victims aware.

read more