Ransomware Attack Stole PII from Advantest, Global Semiconductor Test‑Equipment Maker
Advantest disclosed that a February 2026 ransomware breach exfiltrated personal data—including SSNs, passports, and medical records—from its corporate network. The incident underscores the importance of incident‑response and privacy controls for audit readiness.
ADTP Breach Watch· October 7, 2026· BleepingComputer
SeverityHigh
Type🏥 Ransomware
ConfidenceHigh
ReportedOct 7, 2026
Manufacturing & IndustrialSemiconductor test‑equipment manufacturersCustomers, employees, and partners of AdvantestUnknownRansomware
What happened
In February 2026 a threat actor breached Advantest’s network, deployed ransomware, and stole personally identifiable information such as Social Security numbers, passports, and medical data. The company confirmed the theft in an October 2026 breach notice, but could not quantify the number of affected individuals.
Why it matters for trust and compliance
The breach tests the control objective of incident response and data‑protection, requiring documented detection, containment, forensic evidence, and privacy‑notification processes to satisfy audit expectations.
Demonstrate that incident‑response evidence collection meets audit‑ready standards.
Validate encryption, access‑control, and privacy‑notification controls for PII across the data lifecycle.
Who is affected
Semiconductor test‑equipment manufacturersCustomers, employees, and partners of Advantest
Recommended actions
Conduct a tabletop exercise of your ransomware response plan and capture evidence artifacts.
Ensure all PII at rest is encrypted and access is limited to least‑privilege accounts.
Map the incident to the relevant control objective and gather documentation for audit readiness.
Get the Breach Digest
The incidents that matter for your vendors and your data, analysed for practitioners, in one email.