Libertas Funding, LLC detected unauthorized access to its systems in September 2026 and confirmed that an outside party acquired files containing names, dates of birth, contact information, and Social Security numbers belonging to loan applicants and business owners. The company began mailing notices in October 2026. Affected individuals should enroll in the free credit monitoring offered and consider a credit freeze given the sensitive data involved.
| Company | Libertas Funding, LLC |
|---|---|
| Industry | Finance |
| Data Types Exposed | Full Name, Contact Information, Date of Birth, Social Security Number |
| People Affected | Not Publicly Disclosed |
| Attack Method | Unauthorized Network Access |
| Regulators Notified | Not Publicly Disclosed |
Were you affected by this breach?
You may be owed compensation.
Data breach victims can recover money for identity-theft losses, out-of-pocket costs, wasted time, and the ongoing risk of fraud — usually with no upfront cost, and no fee unless you win.
Check if you qualify — free reviewWhat Happened in the Libertas Funding Data Breach?
Libertas Funding, LLC, a Connecticut-based company that provides revenue-based financing to small and mid-sized businesses, has confirmed a data breach affecting people connected to its loan files. According to the company’s own notification, unauthorized access to its network occurred in September 2026. The company says it noticed suspicious activity inside its computer systems around that time and moved to respond.
Libertas Funding has stated that an unauthorized party acquired files containing personal information. This is an important detail. It means data was actually copied or taken, not simply that someone briefly viewed a system.
As a result, the company activated its incident response plan. It also brought in outside cybersecurity specialists to examine what happened and contacted law enforcement. Following this forensic review, Libertas Funding determined whose personal information appeared in the stolen files. The company then began sending written notices to those individuals starting in October 2026.
So far, Libertas Funding has said it has no evidence that anyone’s information has actually been misused. However, that statement only reflects what the company knew when it mailed its notices. It does not guarantee that misuse won’t happen later, which is why affected individuals should still stay alert.
Who was affected?
Clients of Libertas Funding are the primary group affected by this incident. This likely includes small business owners, guarantors, and other individuals who applied for financing on behalf of a company. Because lenders like Libertas Funding collect personal identifiers from anyone tied to a loan application, the pool of affected people may extend beyond just the business’s primary borrower.
The exact number of people affected has not been publicly disclosed. Libertas Funding has not released a total count in the notice reviewed for this report. Additional details may surface as other state regulators publish their own breach filings in the coming weeks.
Because Libertas Funding operates nationally as a financing provider, affected individuals could be located in many different states. The data involved was tied to loan applications, meaning this breach mainly touches people who engaged with the company in a financial or business capacity, rather than general consumers with no direct relationship to the firm.
What Information Was Potentially Exposed?
The notice sent by Libertas Funding identifies specific categories of personal data involved in this incident. This information was collected as part of the company’s loan application and regulatory compliance process.
- Full name
- Contact information
- Date of birth
- Social Security number
The combination of a Social Security number and date of birth is especially sensitive. Criminals can use this pairing to open new credit accounts, apply for loans, or file fraudulent tax returns using a victim’s identity. This type of exposure tends to carry more risk than a leak involving only names or email addresses.
In addition, because the people affected applied for business financing, their data may be connected to business records as well as personal details. This means fraudsters could potentially attempt business-related fraud alongside personal identity theft. Anyone who receives a notice from Libertas Funding should treat the exposed information as a meaningful risk rather than a minor inconvenience.
What is the company doing?
Libertas Funding says it secured its systems after discovering the suspicious activity. The company also says it hired outside forensic experts to investigate the scope of the intrusion. In addition, it notified law enforcement about the incident.
Following the investigation, Libertas Funding began mailing notification letters to affected individuals in October 2026. The company has also stated it strengthened its security measures, improved its monitoring systems, and increased employee training around data protection practices. These steps reflect the company’s stated response as described in its notice.
Libertas Funding is offering recipients single-bureau credit monitoring, along with a credit report and credit score tracking service, for 24 months from enrollment. The company is also providing fraud assistance through Cyberscout, a TransUnion company. The enrollment deadline listed in the notice is February 22, 2027, and each recipient must use the unique code provided in their individual letter.
The company also filed formal notification of this incident with the Massachusetts Attorney General, as part of its regulatory reporting obligations. This filing helps confirm the scope and timeline of the breach as described in this report.
What Should Affected Individuals Do?
Enroll in the Free Credit Monitoring Offered
If you received a letter from Libertas Funding, you should enroll in the complimentary credit monitoring service right away. This service, along with Cyberscout fraud assistance, is free for 24 months from the date of enrollment. However, you must act before the February 22, 2027 deadline listed in your letter.
This monitoring can alert you quickly if someone tries to open new credit in your name. Because enrollment requires the unique code mailed to you, keep your letter in a safe place. If you lose it, contact Libertas Funding for help accessing your enrollment code.
Place a Fraud Alert or Credit Freeze
Because Social Security numbers were involved in this breach, consider placing a fraud alert or full credit freeze with Equifax, Experian, and TransUnion. A credit freeze is generally the stronger protection, since it blocks new accounts from being opened in your name without your explicit approval.
This step is especially important given the Social Security number and date-of-birth combination exposed here. Together, these details can let a criminal pass identity verification checks at many lenders. Freezing your credit directly closes off that pathway.
Monitor Financial and Tax Accounts Closely
You should review your bank statements, credit card activity, and any tax account records for unfamiliar activity. This is especially important if you applied for business financing, since your personal and business finances may both be exposed.
In addition, consider requesting an IRS Identity Protection PIN. This added step helps prevent criminals from filing a fraudulent tax return using your Social Security number. Because tax-related fraud can take months to surface, ongoing vigilance matters here.
Watch for Phishing Attempts Referencing This Breach
Scammers often use breach news to craft convincing phishing emails, texts, or phone calls. Be cautious of any message referencing your business financing application or claiming to be from Libertas Funding.
Never click links or share personal details in response to unsolicited messages. Instead, contact the company directly using verified contact information if you’re unsure whether a message is legitimate. This simple habit can prevent a second wave of fraud following the original breach.
Report Suspected Identity Theft Promptly
If you notice any signs of fraud, report it immediately to the Federal Trade Commission and your state Attorney General’s office. Acting quickly can limit the damage and create an official record of the incident.
Furthermore, keep copies of all correspondence related to the breach, including your notification letter. This documentation may become useful if you later decide to pursue legal options or need proof of harm for recovery purposes.
Get a Free Case Review
Tell us how this breach affected you. A data breach attorney will review your situation at no cost and with no obligation — it takes about two minutes.
