Back to feed
This event is part of a larger story
Франция, Казахстан, Польша: кибератаки раскрыли данные сотен тысяч
Read briefing

Upbound Group hack leads to $13 million in fraudulent Acima leases

1 min
Upbound Group hack leads to $13 million in fraudulent Acima leases

This digest was compiled by AI from multiple sources — links to the originals are below.

Upbound Group disclosed that a cyberattack on its systems resulted in $13 million in fraudulent leases through its Acima unit. The company filed the incident with the SEC and implemented enhanced security measures.

The Incident

Upbound Group, formerly Rent-A-Center, disclosed in an SEC filing that threat actors stole non-sensitive customer information and documents. The attackers used the data to create fraudulent lease-to-own agreements via Acima, a subsidiary that provides payment options through third-party retailers. The fraud resulted in $13 million in losses in the second quarter of 2026.

Company Response

Upon detecting the breach, Upbound engaged external cybersecurity experts and implemented enhanced authentication, fraud detection, and monitoring. Federal law enforcement was notified. The company stated the attack was not material enough to affect investment decisions, and no ransomware group has claimed responsibility.