Upbound Group disclosed that threat actors used stolen customer data and documents to create fraudulent Acima lease-to-own agreements, causing about $13 million in losses. The company said it has launched mitigation steps, notified federal law enforcement, and continues investigating the incident. #UpboundGroup #Acima #RentACenter
Keypoints
- Upbound Group reported a cybersecurity incident involving unauthorized access to customer information and documents.
- Stolen data was used to obtain goods through fraudulent Acima lease-to-own agreements.
- The fraud caused about $13 million in losses in the Acima segment during the second quarter.
- Upbound implemented stronger authentication, fraud detection, and monitoring controls after discovering the attack.
- Federal law enforcement was notified, and the company continues to investigate the incident.