Chick-fil-A reveals data breach — customers warned hackers may have accessed their account info
- Chick‑fil‑A confirmed a credential stuffing attack between June 17–19, breaching thousands of accounts
- Exposed data includes names, emails, membership numbers, payment details, birthdays, and addresses
- Company logged out users, removed payment methods, restored balances, and notified multiple US states
Chick-fil-A is notifying its customers of a worrying cyber incident involving their sensitive information being leaked.
In a data breach notification letter being sent to affected customers, the fast food giant said it recently identified “suspicious login activity”, which prompted it to investigate further.
That investigation determined that unidentified threat actors ran a credential stuffing attack between June 17 and June 19 2026, successfully breaching an unknown number of accounts.
Logging everyone out
A credential stuffing attack is when threat actors use automated systems to try thousands of username/password combinations against a service to see which ones work. The login credentials are usually obtained on the black market, in advance.
Since...
Copyright of this story solely belongs to techradar.com. To see the full text click HERE