Kellys Home Center Data Breach Exposes Customer and Employee Personal Information

Published: 28 September 2026
Retail data breach illustration
Breach Discovery: Not Publicly DisclosedBreach Notification: Not Publicly Disclosed

A ransomware group called pear has claimed a data breach at Kellys Home Center, a US retailer of appliances, mattresses, and furniture. The company has not confirmed the incident, and the exact data exposed and number of affected people remain undisclosed. Affected customers and employees should monitor accounts closely and consider a credit freeze as a precaution.

CompanyKellys Home Center
IndustryRetail
Data Types ExposedFull Names and Contact Information, Billing and Shipping Addresses, Payment Card or Financial Account Details, Purchase and Order History, Employee Personnel Records, Login Credentials
People AffectedNot Publicly Disclosed
Attack MethodRansomware
Regulators NotifiedNot Publicly Disclosed

Were you affected by this breach?

You may be owed compensation.

Data breach victims can recover money for identity-theft losses, out-of-pocket costs, wasted time, and the ongoing risk of fraud — usually with no upfront cost, and no fee unless you win.

Check if you qualify — free review

What Happened in the Kellys Home Center Data Breach?

A threat actor group known as pear has claimed responsibility for a cyberattack against Kellys Home Center. The company sells home appliances, mattresses, and furniture. News of the claim surfaced through a listing on a site that tracks ransomware and extortion group activity.

According to that listing, the pear group says it accessed the company’s network and obtained data. However, the breach discovery date has not been publicly disclosed. As a result, the exact timeline of the intrusion remains unclear at this time.

Kellys Home Center has not publicly confirmed this incident. Because the claim comes from the attacker rather than the company itself, key details are still unverified. In addition, no independent forensic report has been made public yet. Affected individuals should watch for official communication directly from the retailer as more facts emerge.

Who was affected?

The population affected by this claimed Kellys Home Center data breach has not been specified. Typically, incidents like this can involve customers, employees, or both. Since the company handles in-store and online furniture and appliance sales, customer payment and contact records could be at risk.

The exact number of individuals affected has not been publicly disclosed. Furthermore, the geographic scope of the alleged breach is unknown. Because Kellys Home Center operates in the US, any confirmed exposure would likely affect US-based customers and staff members.

It also remains unclear whether minors’ information could be involved. For example, family purchase records or delivery information sometimes include details about household members. Until the company issues an official statement, the full scope of affected people stays uncertain.

What Information Was Potentially Exposed?

Because this incident stems from an extortion group’s claim, the specific data categories taken have not been officially confirmed. However, retail and furniture companies typically store several types of sensitive customer and employee records. Based on the nature of the business, the following categories are commonly at risk in similar retail breaches.

  • Full names and contact information
  • Billing and shipping addresses
  • Payment card or financial account details
  • Purchase and order history
  • Employee personnel records
  • Login credentials for online accounts

If any of this information was truly accessed, the risk of identity theft would rise sharply. Criminals often combine names, addresses, and financial details to open new credit lines. Consequently, victims could face unauthorized charges or fraudulent accounts opened in their name.

In addition, exposed login credentials could lead to account takeover on other websites. This happens because many people reuse passwords across multiple platforms. As a result, a breach at one retailer can sometimes ripple into wider fraud elsewhere.

What is the company doing?

Kellys Home Center has not publicly confirmed this breach. Therefore, no specific investigation, containment, or notification steps have been disclosed by the company at this time. This article will be updated if the retailer issues an official statement.

Because the claim originates solely from the pear extortion group’s own listing, it should not be treated as confirmed fact. Meanwhile, affected individuals should still take precautions. Monitoring accounts and watching for suspicious activity remains a smart step regardless of official confirmation.

What Should Affected Individuals Do?

Monitor Your Credit Reports

Check your credit reports regularly for accounts or inquiries you do not recognize. You can request free reports from each of the three major credit bureaus. Reviewing these reports often helps catch fraud early, before serious damage occurs.

Because fraud can take months to surface, set a recurring reminder to check your reports. In addition, look closely at your bank and card statements each month. This habit gives you an early warning if someone misuses your information.

Consider a Fraud Alert or Credit Freeze

If financial or identity data was exposed, placing a fraud alert on your credit file adds an extra layer of protection. This step requires lenders to verify your identity before opening new credit. A credit freeze goes further by blocking most new credit applications entirely.

Both options are free and can be requested directly through the credit bureaus. However, a freeze must be temporarily lifted if you apply for new credit yourself. Despite this minor inconvenience, a freeze remains one of the strongest protections against identity theft.

Watch for Phishing Attempts

After any data breach claim, scammers often send fake emails or texts pretending to be the affected company. These messages may ask you to click links or confirm personal details. Because these tactics look increasingly convincing, always verify requests independently before responding.

Instead of clicking links in unexpected messages, go directly to the official company website or call a verified phone number. This simple habit prevents most phishing attempts from succeeding. If something feels urgent or unusual, treat it as a red flag.

Update Passwords and Enable Extra Security

If you have an online account with Kellys Home Center, change your password as a precaution. Use a unique, strong password that you do not reuse elsewhere. This step limits damage even if login credentials were part of any exposed data.

Additionally, enable two-factor authentication wherever it is offered. This adds a second verification step beyond just a password. As a result, even a stolen password becomes far less useful to an attacker.

Consult a Data Breach Attorney

Because breach investigations can uncover new facts over time, it helps to speak with a data breach attorney. An attorney can explain your rights and whether you may qualify for compensation. Many offer free initial case evaluations with no upfront cost.

In the meantime, keep records of any suspicious activity linked to your accounts. This documentation can support a future claim if the breach is later confirmed. Acting early ensures you do not miss any applicable deadlines.

Get a Free Case Review

Tell us how this breach affected you. A data breach attorney will review your situation at no cost and with no obligation — it takes about two minutes.



Related Data Breaches

See the latest data breaches we're tracking →