2026 Cetera Financial Group — employee email account (July–Aug 2025; notices March 2026)
Data compromised
Names, SSNs, driver's license numbers, financial account information (varies)
Technical writeup
Cetera Financial Group, a U.S. network of independent broker-dealers and wealth firms, disclosed unauthorized access to an employee email account between approximately July 7, 2025 and August 21, 2025. The company determined by January 30, 2026 that personal information may have been exposed and began notifying affected individuals around March 25–26, 2026. At least one state filing (New Hampshire) listed 110 residents; nationwide totals were not publicly disclosed. Data types potentially included names, Social Security numbers, driver's license numbers, and financial account information depending on the individual. Cetera offered complimentary credit/identity monitoring (e.g. IDX) with enrollment deadlines communicated to victims.
Root cause
Unauthorized access to employee email account