QuestionPro Inc Reports Data Breach in 2026 Filing
QuestionPro Inc, a market research technology company, reported a data breach to Indiana authorities on August 15, 2026. The incident potentially exposed personal information such as full names, email addresses, and credential hashes for affected individuals. The company's investigation into the security event remains ongoing.
- State
- Indiana
- Breach date
- August 12, 2026
- Reported
- August 15, 2026
What may have been exposed
- Full Name
- Email Address
- Password or Credential Hash
- Mailing Address
- Telephone Number
- Date of Birth
- Purchase and Order History
- Demographic and Survey Response Data
QuestionPro Inc, a significant provider of enterprise software and market research technology, filed a data breach notification with Indiana authorities on August 15, 2026. The filing describes a security incident that occurred on August 12, 2026, which is currently under monitoring. While the specific method of compromise was not detailed, such incidents often involve sophisticated credential compromises, unauthorized access to cloud storage, or vulnerabilities within software supply chains. As a platform managing extensive consumer and corporate data, QuestionPro Inc's systems process various types of information.
According to the notification, the breach involved several categories of personal data. The exposed information includes Full Name, Email Address, Password or Credential Hash, Mailing Address, Telephone Number, Date of Birth, Purchase and Order History, and Demographic and Survey Response Data. These details were compromised during the August 2026 incident.
The exposure of such a combination of personal identifiers and contextual information creates various risks for affected individuals. Cybercriminals might attempt targeted phishing attacks using email addresses and names, or 'credential stuffing' attempts on other online accounts if passwords or hashes were obtained. Access to demographic and survey response data could also lead to more personalized social engineering attempts or unwanted marketing.
Individuals who receive a notification regarding this breach should remain vigilant. It is recommended to change any passwords that might be similar to those used with QuestionPro Inc. Regularly review financial account statements and credit reports for any suspicious activity. Be cautious of unsolicited communications, especially those asking for personal details, as these could be phishing attempts.
This information is based on the official data breach filing made by QuestionPro Inc with the state of Indiana. The company has indicated that its investigation into the security incident is ongoing. Public filings like these help individuals understand potential exposures and take appropriate security measures.
What to do if you were affected
Based on the categories of information reported in this filing, these steps can help limit the risk of identity theft and fraud.
Secure your online accounts
Change the password on any account that reused an exposed password and turn on two-factor authentication wherever it's offered.
Stay alert to targeted scams
Be cautious of calls, texts, or emails that reference this breach. Legitimate organizations won't ask you to confirm sensitive details through an unsolicited message.
Keep your notification letter
Save the notice you received. It documents that your information was involved and is often needed to enroll in any credit monitoring offered or to join a related legal claim.
Source: Indiana Attorney General filing
Related data breach cases
- Teamsters Local 17
- Bank
- 9World Acceptance Corporation
- McKenzie Creative Brands
- MEBS Global Reach
- Midvale Indemnity and American Family Connect Insurance Company
- American Motorcyclist Association
- Nishiyamato Academy
- Deer Management Co. LLC dba Bessemer Venture Partners
- The Association of the Bar of the City of New York
- Poppins Payroll Company
- Baltimore Medical System Inc
- Chicago Psychoanalytic Institute
- 7The Association of the Bar of the City of New York