
Morning Star Tours, a Dallas-based travel company that specializes in Biblical tours to the Holy Land and other destinations, experienced a data breach in April 2026 that has so far impacted 18,997 people across the United States.
The breach was first reported to the California Attorney General.
On May 4, 2026, a ransomware group known as PEAR claimed responsibility for the attack on the dark web. The group stated it had obtained 1.2 terabytes of data from the organization.
A third-party forensic investigation determined the incident occurred between April 24 and April 30, 2026.
The types of personal information exposed in the breach include names, Social Security numbers, government-issued identification numbers (such as passports and state ID cards) and dates of birth. According to the company's notification, the incident did not involve driver's license numbers, financial account or payment card information.
Other disclosed impacts by state include 8,651 Texas residents and 63 Vermont residents.
Morning Star Tours is offering affected individuals complimentary identity theft protection services through IDX. The services include credit and CyberScan monitoring, a $1,000,000 insurance reimbursement policy and fully managed identity theft recovery services.
Affected individuals can enroll by visiting the IDX enrollment page or by calling 1-888-204-1471. The enrollment deadline is Sept. 1, 2026, and individuals must enroll within 90 days of receiving their notification letter.
Representatives are available to answer questions at 1-888-204-1471, Monday through Friday from 9 a.m. to 9 p.m. Eastern Time, excluding holidays. This phone line will remain available for 90 days from the date of the notification letter.








.webp)
.webp)
.webp)

.webp)
.webp)
.webp)
.webp)