← Back to Risk overview
SEC 8-K · Cybersecurity incidents

Recent cybersecurity incidents 8-K filings

8-K filings disclosing material cybersecurity incidents (Item 1.05), the SEC-mandated disclosure, classified daily.

22
Events on record
20
Most recent shown
Daily
Refreshed from EDGAR
Severity is an honest triage signal derived deterministically from the 8-K item codes, not investment, legal, or compliance advice. Coverage is refreshed daily from the EDGAR index, not real-time.
high
UPBOUND GROUP, INC.2026-07-22

Cybersecurity incidents involving unauthorized access to non-sensitive customer information led to fraudulent lease-to-own agreements causing approximately $13 million in losses in Q2 2026. Mitigation measures implemented; investigation ong

CIK 0000933036View 8-K filing ↑
high
FIVE BELOW, INC2026-07-22

Unauthorized access to employee's company computer via social engineering on July 14, 2026. Threat actor exfiltrated files. Company contained incident; no PII accessed or other systems affected. No material impact expected.

CIK 0001177609View 8-K filing ↑
high
CLOVER HEALTH INVESTMENTS, CORP. /DE2026-07-17

Clover Health identified unauthorized access to three employee accounts on July 4, 2026 via social engineering. Accounts had access to member and health information but not financial or claims systems. Company contained the incident and doe

CIK 0001801170View 8-K filing ↑
high
River Financial Corp2026-07-17

Unauthorized threat actor gained access to River Financial Corporation and River Bank & Trust network environment. Four class action lawsuits filed. Full scope and material impact undetermined as of July 17, 2026.

CIK 0001641601View 8-K filing ↑
high
COCA COLA CO2026-07-16

Fairlife LLC (Coca-Cola subsidiary) identified unauthorized third-party access to systems via ransomware on July 16, 2026. U.S. production temporarily suspended; Canada operations unaffected. Product safety intact. Scope and material impact

CIK 0000021344View 8-K filing ↑
high
River Financial Corp2026-07-10

Unauthorized threat actor accessed network portions and removed certain data. Nature and scope of information, including PII involvement, under investigation. No fraud reports to date. Two class action lawsuits filed.

CIK 0001641601View 8-K filing ↑
high
SR Bancorp, Inc.2026-07-10

Unauthorized actor accessed certain files on Mercadien's servers containing Bank customer data including names, SSNs, account numbers, and identification documents. Bank systems and operations unaffected. Company notifying customers as requ

CIK 0001951276View 8-K filing ↑
high
River Financial Corp2026-07-06

River Financial Corporation disclosed a cybersecurity incident with potentially impacted data. Investigation ongoing; no confirmed account impact to date. Full scope and materiality to be determined.

CIK 0001641601View 8-K filing ↑
high
NAVIENT CORP2026-07-02

Third-party law firm experienced ransomware attack on June 8, 2026, exposing Company customer data including names, dates of birth, addresses, and Social Security numbers. Company systems unaffected. Notifications underway.

CIK 0001593538View 8-K filing ↑
high
AdaptHealth Corp.2026-07-02

AdaptHealth Corp. experienced a material cybersecurity incident involving unauthorized access to cloud-based systems and exfiltration of patient data including PII and PHI. Incident contained as of June 27, 2026.

CIK 0001725255View 8-K filing ↑
high
AFLAC INC2026-06-30

Aflac Japan discovered unauthorized third-party access to certain systems between June 15-25, 2026. Impacted files contain policy details, personal information, and bank account data. U.S. systems unaffected. Investigation ongoing.

CIK 0000004977View 8-K filing ↑
high
River Financial Corp2026-06-25

Unauthorized threat actor accessed River Financial Corporation's network on or about June 16, 2026. Ransomware deployed across server portions. Detected June 19. Containment measures taken. Investigation ongoing to determine scope and PII i

CIK 0001641601View 8-K filing ↑
high
8X8 INC /DE/2026-06-23

Unauthorized third party exploited Klue Labs integration with Salesforce CRM on June 11-12, 2026, exfiltrating customer contract, opportunity, and contact information. Incident isolated to Salesforce; business operations unimpacted.

CIK 0001023731View 8-K filing ↑
high
AmpliTech Group, Inc.2026-06-22

Company disclosed cyber phishing scam resulting in $3.2M loss of digital currency assets held with fraudulent custodian in 2024. Board formed special committee; investigation found no personal involvement by officers/directors. Shareholder

CIK 0001518461View 8-K filing ↑
high
iRhythm Holdings, Inc.2026-06-15

Unauthorized access to third-party-hosted business applications identified June 8, 2026. Data exfiltration confirmed including proprietary data and patient protected health information. Threat actor demanded payment. No impact to clinical s

CIK 0001388658View 8-K filing ↑
high
Coupang, Inc.2026-06-11

Korean Personal Information Protection Commission announced $410 million in fines against Coupang Corp. for November 2025 data incident and separate data protection violations. Fines to be recognized in Q2 2026 results.

CIK 0001834584View 8-K filing ↑
high
POPULAR, INC.2026-06-09

Third-party processor Evertec experienced cybersecurity incident affecting BPPR customer data including debit card numbers. Corporation's systems not accessed. Company has contractual right to reimbursement and does not expect material impa

CIK 0000763901View 8-K filing ↑
high
EVERTEC, Inc.2026-06-09

EVERTEC disclosed unauthorized access to customer data discovered May 13, 2026. Third-party support platform breach exposed transaction records, payment card numbers, and customer information for Puerto Rico financial institution clients. I

CIK 0001559865View 8-K filing ↑
high
Oncology Institute, Inc.2026-05-22

Cybersecurity incident affecting vendor software service provider detected May 20, 2026. Unauthorized third-party access to Company systems including patient data. Company operations continuing; investigation ongoing; no material impact rep

CIK 0001799191View 8-K filing ↑
high
WEST PHARMACEUTICAL SERVICES INC2026-05-20

West Pharmaceutical Services experienced a material cybersecurity attack on May 7, 2026 involving data exfiltration and system encryption. Systems have been restored and the company is fully operational. No material financial impact expecte

CIK 0000105770View 8-K filing ↑