ADT publicly confirmed April 2026 theft of customer and prospect data, with BleepingComputer and state regulatory aggregates citing on the order of ~5.5 million individuals and fields such as names, emails, phones, addresses, DOB, and partial tax/ID data—while ShinyHunters marketed larger dumps after non-payment. Coverage often described a vishing path against employee Okta SSO enabling Salesforce exfiltration.
Canonical record: ADT 2026 on BreachHistory.
Sources: BleepingComputer, The Record