Data breach
Milgard - Windows and Doors
- Records
- 413,693
- Breach date
- 27 October 2025Estimated
- Added
- 21 December 2025
What was exposed
6 types of data
- Phone numbers413,693
- Names336,272
- Email addresses162,346
- Licence plates14,071
- Street addresses12,543
- Dates of birth32
About this breach
The investigation team has indexed a dataset tied to Milgard Windows and Doors, the Washington-based manufacturer of vinyl, aluminum, wood, and fiberglass windows and patio doors. The dataset contains 413,693 rows and is associated with the company's domain, milgard.com. Our team estimates the breach occurred on or around October 27, 2025, and the listing was added to our database on December 21, 2025. However, independent breach trackers have linked it to the CL0P ransomware group: Breachsense lists CL0P as the claiming actor, and ransomware.live records the group listing milgard.com as a victim on its leak site.
October 22, 2025: Breachsense recorded the Milgard Windows & Doors breach as discovered on this date, attributing the claim to CL0P.
October 27, 2025: Ransomware.live recorded the CL0P group listing milgard.com as a victim on its leak site.
Limited public reporting: As of September 25, 2026, detailed company notices or major news coverage for this listing were limited in sources reviewed. The facts below rely primarily on the indexed fields plus any secondary sources cited.
What Information Was Compromised?
Our analysis found the following data types in this breach: names (336,272 records), phone numbers (413,693 records), email addresses (162,346 records), street addresses (12,543 records), vehicle plates (14,071 records), and birthdays (32 records).
Not every individual is affected by every type of data listed here.
What Are the Potential Risks for Affected Individuals?
The volume and combination of personal data here matters more than any single field. With names, phone numbers, and email addresses together, scammers can craft convincing phishing texts and calls that reference you personally. Street addresses and vehicle plate numbers add credibility to impersonation attempts and could support targeted fraud, such as fake delivery notices or warranty scams that reference real property details.
Even the smaller categories carry weight. A birthday paired with a name and address is a common building block for identity verification checks at banks and credit bureaus. Vehicle plates can be used to learn more about a household or to stage convincing roadside or parking-related scams.
There is no evidence in our indexed fields that passwords, payment card data, or government identification numbers were part of this dataset. That limits the most direct financial risks, but it does not eliminate them. People whose data appears in this breach could still face ongoing targeted phishing, especially if the same contact details were reused across other services.
What Should You Do If You Were Affected?
Start by checking whether your email address or phone number appears in this breach using the search tool. If it does, take these steps:
Treat unexpected calls, texts, and emails about windows, warranties, deliveries, or account problems with suspicion. Do not click links or share personal details until you have verified the sender independently.
Check your credit reports for free at annualcreditreport.com and watch for accounts or inquiries you do not recognize.
Consider placing a free fraud alert or security freeze with the three major credit bureaus if you see anything suspicious.
If you use the same password at milgard.com or anywhere tied to Milgard that you use elsewhere, change it now and enable two-factor authentication where available.
Be cautious with your vehicle plate and address details appearing together; a scammer who knows both may sound legitimate on the phone.
