What Happened
In August 2026, Trulite Glass & Aluminum Solutions (operating as Arch Aluminum & Glass, TL Vista Merger Parent Corp) suffered a significant cybersecurity breach. Unauthorized parties gained access to internal company systems and exfiltrated a substantial volume of confidential business data.
Despite repeated attempts to resolve this matter privately, Trulite management has refused to engage or acknowledge the incident to affected parties.
Scope of the Breach
39,000+
Business Accounts
What Data Was Compromised
- Customer account records — company names, account numbers, credit terms, pricing tiers
- Contact information — names, email addresses, phone numbers of customer personnel
- Financial documents — invoices, payment history, open balances, credit card and ACH records
- Purchase orders — order details, delivery schedules, shipping manifests
- Pricing agreements — custom discount groups, multiplier tiers, sales group assignments
- Internal documents — employee records, service credentials, infrastructure details
This data spans all Trulite locations across the United States and Canada.
Verify This Incident
Full evidence and documentation are available on our secure disclosure page:
http://incblog4uttkxd6b4grii6k2qcj2tn5k37seep5xto3dlghyqla7u7qd.onion/post/?id=78c7b222-5cf0-4f70-9cf9-02a17b72219d
This link requires Tor Browser to access:
- Download Tor Browser from torproject.org
- Install and open Tor Browser
- Copy the link above and paste it into the address bar
- Press Enter — the page will load within the Tor network
What You Should Do
- Contact your Trulite representative — ask directly what steps they are taking to protect your data and when they intend to notify affected customers
- Review your account — check for unauthorized changes to credit terms, payment methods, or contact information on the Trulite customer portal
- Monitor financial activity — if you have stored payment methods (credit card or ACH) with Trulite, consider contacting your bank
- Preserve records — save copies of your current invoices, agreements, and correspondence with Trulite
- Consult your IT team — review any shared credentials or VPN/portal access related to Trulite systems
Why You Are Receiving This
You are receiving this notice because your company is listed as an active account holder in Trulite's customer management system. We believe affected parties have a right to know when their business data has been compromised — regardless of whether the breached company chooses to disclose it.
We have no interest in your company's data. Our matter is solely with Trulite. This notice is provided as a courtesy so that you can take appropriate steps to protect your business.