Upbound says hackers stole customer information and documents, then used that data to open fraudulent Acima lease-to-own agreements and obtain goods. In an SEC filing, the company said the misuse caused about $13 million in second-quarter losses in its Acima segment. The company described the stolen data as certain non-sensitive customer information and other documents, said it notified federal law enforcement, and has added stronger authentication, fraud detection, and monitoring while the investigation continues.
Why it matters: This matters to both customers and merchants because stolen identity details were turned into real financial fraud, not just exposed and left unused. People with Acima or related Upbound accounts should watch for suspicious lease activity, while defenders should treat this as a live post-breach fraud case requiring stronger identity and transaction controls.
Eduard Kovacs
2026.07.23
99% relevant
This article is a direct report on the same SEC-disclosed incident, adding that hackers obtained non-sensitive customer information and documents and that the company says the losses occurred in its Acima segment during Q2 2026.
Bill Toulas
2026.07.22
100% relevant
This article appears to be the first concrete report establishing the Upbound/Acima breach as a distinct tracked event, including the company’s disclosure that stolen data directly enabled $13 million in fraudulent leases.
← Back to all stories