Almeida Law Group is investigating a data breach at Fluke Corporation. The breach occurred on August 10th, 2025 – October 7th, 2025 and was discovered on September 29th, 2025. If you were affected, contact Almeida Law Group.
About Fluke Corporation
Fluke Corporation is a multinational manufacturer of electronic test, measurement, and diagnostic equipment, founded in 1948 and headquartered in Everett, Washington. It is a wholly owned subsidiary of Fortive Corporation and employs approximately 4,162 people, with operations in the United States, United Kingdom, Asia, and the Netherlands. The company’s products include digital multimeters, thermal imagers, calibration tools, network testing equipment, and condition monitoring solutions used by technicians, engineers, and electricians across many industries.
What Happened?
Fluke Corporation was listed in a Texas Attorney General data security breach report filed on July 10th, 2026. According to that report and supplemental research, a criminal actor exploited a vulnerability in a third-party business application used by the company, gaining access to a limited segment of Fluke’s network. The same vulnerability affected multiple companies across different industries. The compromised data included names, Social Security numbers, dates of birth, and for certain individuals, an indicator of whether the person self-identified as having a disability. A total of 18,517 people were affected nationwide. Fluke completed its forensic analysis on May 8th, 2026, and began mailing notification letters on May 15th, 2026 — approximately seven and a half months after the breach was first discovered. Affected individuals were offered 24 months of complimentary identity theft protection and credit monitoring through Epiq/Equifax. Fluke also engaged cybersecurity and forensic specialists, patched the vulnerability, reset administrative credentials, removed malicious accounts, and enhanced endpoint monitoring.
The Clop (Cl0p) ransomware group listed Fluke Corporation on its dark web leak site on November 13th, 2025, though Fluke has not publicly confirmed Clop’s involvement. Separately, threat intelligence platform DeXpose reported on July 1st, 2026, that the ShinyHunters group claimed a distinct attack on Fluke involving over 21 million Salesforce records; that claim has not been independently confirmed. A federal class action lawsuit was filed on June 5th, 2026, in U.S. District Court for the Western District of Washington by a Fluke employee. The complaint alleges that Fluke failed to implement adequate cybersecurity protocols and delayed notification to affected individuals. The suit seeks monetary relief, company-funded security upgrades, future audits, and longer-term credit monitoring. Multiple law firms have announced investigations or are pursuing claims on behalf of affected individuals. The case is in its early stages.
Key Facts at a Glance
- Company or Organization: Fluke Corporation
- Industry: Electronics manufacturing — industrial test and measurement equipment
- Location: Everett, Washington
- Incident type: Unauthorized access via third-party application vulnerability
- Date of breach: August 10th, 2025 – October 7th, 2025
- Date breach discovered: September 29th, 2025
- Date of consumer notification: May 15th, 2026
- Total persons affected: 18,517
- Identity theft protection offered: 24 months of identity theft protection and credit monitoring through Epiq/Equifax
- Prior breach: ShinyHunters group claimed a separate attack involving over 21 million Salesforce records (reported July 1st, 2026; unconfirmed)
- Litigation status: Federal class action filed June 5th, 2026, in U.S. District Court, Western District of Washington; multiple law firm investigations ongoing
- Source: Texas Attorney General data security breach report BR-0005167; Comparitech; HeraldNet; ClassAction.org; DeXpose — ShinyHunters
What Should You Do?
If you received a notification from Fluke Corporation, enroll in the complimentary 24-month identity theft protection and credit monitoring offered through Epiq/Equifax as soon as possible. You should also consider placing a fraud alert or credit freeze with the three major credit bureaus — Equifax, Experian, and TransUnion — to help prevent unauthorized accounts from being opened in your name. Review your credit reports at AnnualCreditReport.com and monitor your financial accounts for any unfamiliar activity. If you suspect your information has been misused, visit IdentityTheft.gov for step-by-step guidance from the Federal Trade Commission.
Your Legal Rights
If your personal information was involved in this breach, you may have legal rights depending on the facts of the incident and the law in your state. Almeida Law Group represents consumers in data breach and privacy litigation and can help you evaluate whether you may have a claim. Contact us at (708) 529-5418 or through our contact page for a free case evaluation.