Affirm Holdings
Disclosed Jul 1, 20242 years agoConfirmed
Cybersecurity incident disclosed to the SEC (8-K Item 8.01)
On June 25, 2024, Evolve Bank & Trust ("Evolve"), the third-party issuer of the Affirm Card, notified the Company that Evolve had experienced a cybersecurity incident whereby a third party gained unauthorized access to personal information and financial information ("Personal Information") of Evolve retail banking customers and the customers of its financial technology partners. Because the Company shares the Personal Information of Affirm Card users with Evolve to facilitate the issuance and servicing of Affirm Cards, the Company believes that the Personal Information of Affirm Card users was
What is known
| People affected | Not stated in the sources we have |
|---|---|
| Disclosed | Jul 1, 2024 |
| Attack | Vendor breach |
| Data exposed | Not stated |
| Sector | Other · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| Affirm Holdings, Inc. Form 8-K, Item 8.01 (2024-07-01)sec.gov · SEC filing | SEC filing |
Notices filed
| Where | Filed | People |
|---|---|---|
| SEC 8-K 8.01total | Jul 1, 2024 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (SEC 8-K 8.01), confirmed by SEC 8-K 8.01. Record counts are as reported. Not legal advice.