Ericsson US Data Breach Linked to Third-Party Service Provider Compromise
Mar 9, 2026 // 23:19 - Lina Schonbein


Ericsson’s U.S. subsidiary has disclosed a data breach resulting from a cyberattack on a third-party service provider.

Key Details of the Breach

The incident originated at an external vendor and was first detected by the service provider, who notified Ericsson of unauthorized access to their environment. 

  • Discovery Timeline: Ericsson completed a comprehensive review of the affected files on February 23, 2026, confirming that personal information was included in the data exfiltrated from the vendor’s systems.
  • Data Exposed: While Ericsson has not publicly specified the exact number of individuals impacted, the exposed files contained personal information belonging to a subset of individuals associated with Ericsson’s U.S. operations.
  • Attribution: Although the company categorized the incident as a data theft attack, no specific cybercrime group has claimed responsibility. 

Protection and Response

Ericsson is currently notifying affected individuals and offering support services to mitigate potential risks. 

  • Identity Protection: Impacted individuals are being offered free identity protection services through IDX, which includes:
    • Credit and dark web monitoring.
    • Identity theft recovery services.
    • A $1 million identity fraud loss reimbursement policy.
  • Enrollment Deadline: Affected people must enroll in these services by June 9, 2026. 

This breach follows a pattern of supply-chain targeting in the telecommunications sector, similar to recent incidents involving Salesloft Drift that impacted Ericsson Enterprise Wireless Solutions in late 2025.

#breach  #compromise  #data  #ericsson  #linked  #news  #provider  #service  #third-party   —   News