Chick‑fil‑A Confirms Customer Data Exposure After Cyberattack; North Carolina Among Affected States

Coastal Carolina News - CC News Stock Photo

Company says attackers accessed loyalty accounts; no Chick‑fil‑A operates in Columbus County, but many residents use nearby locations

By Coastal Carolina News Staff Writer

Chick‑fil‑A has confirmed that a recent cyberattack may have exposed customer information across multiple states, including North Carolina, placing many residents in Brunswick and Columbus counties within the scope of the incident. The company disclosed that attackers used stolen usernames and passwords in a credential‑stuffing attack between June 17 and June 19, 2026, targeting Chick‑fil‑A One loyalty accounts.

The company reported that unauthorized parties may have accessed customer profiles containing varying levels of personal information. According to Chick‑fil‑A’s notification, exposed data may include names, email addresses, membership numbers, Mobile Pay IDs, QR codes, gift card balances, birthdates, phone numbers, and home addresses. In some cases, the last four digits of stored payment cards were also visible.

Chick‑fil‑A stated that the breach did not expose full credit card numbers, but the combination of partial payment data and personal identifiers increases the risk of fraud for customers who reused passwords across multiple platforms. North Carolina was included in formal breach notifications sent to customers alongside states such as Maryland, New York, and Massachusetts, confirming that the incident directly affects residents within the Coastal Carolina News coverage area.

While Columbus County does not have a local Chick‑fil‑A storefront, many residents regularly visit nearby stores in Lumberton, Shallotte, and Leland. Brunswick County hosts multiple locations, and Horry County residents frequently cross state lines for dining and shopping. Because the breach involves Chick‑fil‑A One accounts, the impact is tied to account usage rather than store location, meaning customers across all three counties may be affected. Cybersecurity analysts note that credential‑stuffing attacks typically succeed when users reuse passwords across multiple websites, prompting Chick‑fil‑A to urge customers to reset their credentials and review account activity.

In response to the incident, Chick‑fil‑A stated that it has taken swift steps to secure affected accounts, force log‑outs, remove stored payment methods, restore drained balances, and notify impacted users directly.

The company recommends that users reset their passwords, use unique combinations not shared with other platforms, review bank statements, and monitor credit reports. Customers seeking assistance can contact Chick‑fil‑A’s support line at 888.201.5329 during business hours.

The cyberattack unfolds as national retailers continue to report an increase in credential‑based intrusions. For residents throughout the coastal region who frequently use mobile ordering and rewards programs, the incident underscores the critical importance of digital hygiene and active account monitoring.


© 2026 CoastalCarolinaNews.com. All rights reserved.

 

About Coastal Carolina News Staff 3061 Articles
Stories are compiled by the BC News & Dollar-Saver Staff

Be the first to comment

Leave a Reply

Your email address will not be published.


*