Skip to content

Affirm Holdings

Disclosed Jul 1, 20242 years agoConfirmed

SEC filing

Cybersecurity incident disclosed to the SEC (8-K Item 8.01)

On June 25, 2024, Evolve Bank & Trust ("Evolve"), the third-party issuer of the Affirm Card, notified the Company that Evolve had experienced a cybersecurity incident whereby a third party gained unauthorized access to personal information and financial information ("Personal Information") of Evolve retail banking customers and the customers of its financial technology partners. Because the Company shares the Personal Information of Affirm Card users with Evolve to facilitate the issuance and servicing of Affirm Cards, the Company believes that the Personal Information of Affirm Card users was

What is known

People affectedNot stated in the sources we have
DisclosedJul 1, 2024
AttackVendor breach
Data exposedNot stated
SectorOther · US
StatusConfirmed

Sources

Source
Affirm Holdings, Inc. Form 8-K, Item 8.01 (2024-07-01)sec.gov · SEC filing

Notices filed

WhereFiledPeople
SEC 8-K 8.01totalJul 1, 2024
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (SEC 8-K 8.01), confirmed by SEC 8-K 8.01. Record counts are as reported. Not legal advice.

Everything about Affirm Holdings

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.