mimile
mimile.ai
Back to feed
This event is part of a larger story
Глобальная волна кибератак: от шпионажа до вымогательства
Read briefing

Upbound Group hack leads to $13 million in fraudulent Acima leases

AI digest

This digest was compiled by AI from multiple sources — links to the originals are below.

Upbound Group hack leads to $13 million in fraudulent Acima leases

Upbound Group disclosed that a cyberattack on its systems resulted in $13 million in fraudulent leases through its Acima unit. The company filed the incident with the SEC and implemented enhanced security measures.

The Incident

Upbound Group, formerly Rent-A-Center, disclosed in an SEC filing that threat actors stole non-sensitive customer information and documents. The attackers used the data to create fraudulent lease-to-own agreements via Acima, a subsidiary that provides payment options through third-party retailers. The fraud resulted in $13 million in losses in the second quarter of 2026.

Company Response

Upon detecting the breach, Upbound engaged external cybersecurity experts and implemented enhanced authentication, fraud detection, and monitoring. Federal law enforcement was notified. The company stated the attack was not material enough to affect investment decisions, and no ransomware group has claimed responsibility.

What's Next

Upbound continues to investigate the incident and may take further action based on findings. It remains unclear how many customers were affected, as the company has not disclosed that figure.

1 source

Upbound Group hack leads to $13 million in fraudulent Acima leases