Find notable cyber news and cases, enriched with sources, timelines, and signals.

Upbound Group customer data obtained without authorization

Data Leak
First reported
Last updated
Happening score
H score 44
1 unique sources, 1 articles

Summary

Hide ▲

Upbound Group's customer information and documents were obtained without authorization, confirming a data-leak event that enabled downstream fraud in Acima. The exposed material was used to create fraudulent lease-to-own agreements, driving about $13 million in losses. Upbound said it added enhanced authentication and fraud-detection controls while investigating with external cybersecurity experts.

Related Happenings

Upbound Group hit by ransomware attack

Incident
H score45 First: 23.07.2026 00:43 Last: 23.07.2026 00:43 Sources 1

How related: The threat actor used the information to commit fraud in lease-to-own agreements, resulting in financial losses of about $13 million in the Acima segment in the second quarter of this year.

About this happening: Upbound Group disclosed a cybersecurity incident in which attackers obtained customer information without authorization and used it to drive fraudulent Acima lease-to-ow...

Timeline

  1. 23.07.2026 00:43 2 articles · 1h ago

    Upbound Group discloses unauthorized access to customer data and $13 million Acima fraud

    Initial Disclosure

    Upbound Group disclosed in an SEC filing that certain non-sensitive customer information and other documents were obtained without authorization from its systems, and that stolen data was used to create fraudulent Acima lease-to-own agreements that caused about $13 million in losses in the Acima segment. The company said it began mitigation and remediation with external cybersecurity experts and added enhanced authentication controls, additional fraud-detection mechanisms, and improved monitoring.

    Show sources