Retail

Retail data breaches expose customer payment card information, loyalty program personal details, online account credentials, and employee records at stores, restaurants, and e-commerce companies. These exposures commonly lead to financial fraud, card-not-present fraud used for online purchases, and identity theft affecting both shoppers and staff, since retail breaches often involve point-of-sale systems, e-commerce checkout pages, or loyalty program databases containing large volumes of customer data. A single breach at a retail chain or its payment processor can affect millions of customers across many store locations at once, given how centralized modern retail payment and loyalty systems tend to be. Employees of breached retailers can also be affected separately, since payroll and HR systems are frequently stored alongside customer-facing systems. This page tracks confirmed data breaches at retail and e-commerce companies, including what data was exposed, which companies notified regulators, and what affected individuals can do next to protect their payment information and identity.