
Gale Credit Union, a member-owned, not-for-profit credit union headquartered in Galesburg, Illinois, disclosed a data breach that exposed sensitive personal and financial information.
The breach was reported to the the Massachusetts Office of Consumer Affairs and Business Regulation. The total number of individuals affected across the United States has not been publicly disclosed.
Gale Credit Union was the target of a ransomware attack carried out by the cybercriminal group known as Akira. On Aug. 31, 2026, the group posted a claim on a Tor network site stating that it had obtained 50 gigabytes of the credit union's data.
According to the dark web posting, the compromised data includes employee personal information such as passports, Social Security numbers, driver's licenses and payment card information. The posting also claims the stolen data contains client and partner information, project files, financial records, contracts, agreements and other sensitive corporate documents.
The types of personal information confirmed as exposed by the company included names, Social Security numbers, financial account numbers, and Visa credit card numbers and expiration dates.
The credit union is offering affected individuals a complimentary two-year membership to Kroll Identity Monitoring.
Affected individuals can activate their monitoring by visiting Kroll's enrollment website and entering the membership number provided in their notification letter. The enrollment deadline was included in each individual's letter.
Individuals who have questions or who notice suspicious activity on their accounts can call 844-301-0063, Monday through Friday, from 8:00 a.m. to 5:30 p.m. Central Time, excluding major U.S. holidays.








.webp)
.webp)
.webp)

.webp)
.webp)
.webp)
.webp)