OnTrac, a U.S. parcel delivery company, notified customers that attackers breached its corporate network and accessed certain files containing personal information. The company said the unauthorized access occurred between March 20 and March 22 and was detected on March 23, prompting an internal investigation and the engagement of a third-party incident response specialist.
The exposed information included customer names, though the full scope of compromised data was not publicly detailed because notification materials were redacted. OnTrac said it re-secured the affected data, verified it had not been distributed, and had not identified fraud or public leaks linked to the incident; the company is offering affected individuals 12 months of credit monitoring and identity protection through CyberScout.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
4 events from the most recent confirmed update back to the earliest known activity.
OnTrac disclosed to customers that a corporate network breach may have exposed their personal information. The company said it was offering 12 months of credit monitoring and identity protection through CyberScout to affected individuals.
OnTrac said an attacker gained unauthorized access to certain files on its corporate network between March 20 and March 22. The accessed files contained customers' personal information, though the exact data elements were not publicly disclosed.
As part of its response to the network intrusion, OnTrac said it notified law enforcement after detecting the incident and launching its investigation. The disclosure appeared in later reporting about the breach response.
OnTrac detected the incident on 2026-03-23 and launched an internal investigation. The company also engaged a third-party specialist and took steps to re-secure the affected data and verify it had not been distributed.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
4 references tracked. Mallory keeps watching after this page renders.
teiss.co.uk
Open sourcescworld.com
Open sourcecyberveille.ch
Open sourcebleepingcomputer.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.