Chick-fil- hit by cyberattack
Incident
Summary
Hide ▲
Show ▼
The Chick-fil-A account breach exposed customer data after a credential-stuffing attack hit its website and mobile app, and the company said at least 2,182 Texans were affected. Unauthorized parties used stolen credentials between June 17 and June 19, 2026, then the company determined on July 13, 2026 that account information may have been accessed. The exposed data included names, email addresses, membership numbers, QR codes, Chick-fil-A credit amounts, and the last four digits of payment cards. Chick-fil-A logged out impacted accounts, removed payment methods, restored balances, and told users to change passwords.
Related Happenings
TriZetto Provider Solutions patient and health insurance data leak
Data Leak
H score67
First: 09.03.2026 12:45
Last: 09.03.2026 12:45
Sources 1
About this happening:
TriZetto Provider Solutions disclosed a data leak affecting over 3.4 million individuals, putting sensitive patient and insurance records at risk of identity misuse. The c...
TriZetto Provider Solutions patient and health insurance data leak
Data LeakAbout this happening: TriZetto Provider Solutions disclosed a data leak affecting over 3.4 million individuals, putting sensitive patient and insurance records at risk of identity misuse. The c...
Monroe University stolen-data breach affecting 320,973 people
Data Leak
H score56
First: 14.01.2026 10:57
Last: 14.01.2026 10:57
Sources 1
About this happening:
The Monroe University data leak now has a confirmed scope of 320,973 affected individuals, raising the risk of identity theft and account abuse. Attackers accessed the uni...
Monroe University stolen-data breach affecting 320,973 people
Data LeakAbout this happening: The Monroe University data leak now has a confirmed scope of 320,973 affected individuals, raising the risk of identity theft and account abuse. Attackers accessed the uni...
Timeline
-
22.07.2026 09:40 4 articles · 13d ago
Chick-fil-A determines unauthorized parties may have accessed Chick-fil-A One account data
Initial DisclosureChick-fil-A said that after investigating suspicious login activity to certain Chick-fil-A One accounts, it determined on July 13, 2026 that unauthorized parties may have accessed account information after launching an automated attack against its website and mobile application between June 17 and June 19, 2026 using credentials obtained from a third-party source. The exposed data could include names, email addresses, Chick-fil-A One membership numbers and mobile pay numbers, QR codes, the amount of Chick-fil-A credit, and the last four digits of credit or debit cards; Chick-fil-A logged out impacted accounts, removed payment methods, restored account balances, added rewards, and advised affected users to change their passwords.
Show sources
- Chick-fil-A discloses data breach after credential stuffing attacks — www.bleepingcomputer.com — 22.07.2026 09:40
- Chick-fil-A discloses data breach after credential stuffing attacks — www.bleepingcomputer.com — 22.07.2026 09:40
- Chick-fil-A Accounts Get Fried in Credential Stuffing Attack — www.securityweek.com — 23.07.2026 17:55
- Chick-fil-A data breach affects more than 13,000 customers — www.bleepingcomputer.com — 24.07.2026 17:04