News-Press & Gazette Company (NPG) has notified individuals that it detected potential unauthorized access to its network. After bringing in outside cybersecurity professionals to investigate, the company determined that data may have been copied from its systems between September 9, 2025, and September 25, 2025. NPG says a subsequent manual review of that data, completed on November 17, 2025, led it to conclude that your personal information may have been included in what was taken. This falls into the category of a hacking or system intrusion, meaning someone gained unauthorized entry to NPG’s network rather than the information being lost or misplaced by accident.
The letter is addressed to specific individuals whose information NPG identified through its review, but the notice does not state how many people in total were affected. If you received this letter, NPG has determined your information was potentially involved, even though it has not shared the exact scope of the incident publicly.
What information was exposed?
- The specific categories of personal information involved were not listed in the copy of the letter available for review.
- NPG is offering a full year of credit monitoring and credit report/score services, which is generally offered when sensitive identifiers like a Social Security number or financial account information may be at risk — but this letter does not confirm that directly.
NPG is offering a complimentary one-year membership in Single Bureau Credit Monitoring, Single Bureau Credit Report, and Single Bureau Credit Score services through Cyberscout, a TransUnion company. The activation website and unique enrollment code were not included in the version of the letter reviewed, but NPG states that you must enroll within 90 days from the date of the letter to take advantage of this service.
What should you do now?
- Enroll in the free credit monitoring offered by NPG before the 90-day deadline stated in your letter, using the activation instructions included with your specific notice.
- Place a free initial fraud alert with one of the three major credit bureaus (Equifax, Experian, or TransUnion) — once one bureau is notified, it will alert the other two.
- Consider placing a security freeze on your credit files with all three bureaus, which prevents new accounts from being opened in your name without your authorization.
- Request your free annual credit reports at annualcreditreport.com and review them closely for accounts or inquiries you don’t recognize.
- Because the exact data exposed wasn’t specified, consider signing up for a service like Aura or LifeLock, which can alert you if your information appears elsewhere.
- Watch your financial statements regularly for unfamiliar charges, and report any suspicious activity to your bank and local law enforcement promptly.
- Keep a copy of this breach letter and any correspondence with NPG or Cyberscout in case you need to reference it later or file an identity theft report with the FTC at ftc.gov/idtheft.