Hibbett Retail Data Breach Exposes Customer Info, Payment Cards
Hibbett Retail, Inc. reported a data breach on September 8, 2026, stemming from an incident that occurred on April 22, 2026. The breach exposed customer information including full names, email addresses, payment card details, and account credentials. This exposure heightens the risk of financial fraud and identity-related harms for those affected.
- State
- California
- Breach date
- April 22, 2026
- Reported
- September 8, 2026
What may have been exposed
- Full Name
- Email Address
- Password or Credential Hash
- Mailing Address
- Purchase and Order History
- Payment Card Information
- Phone Number
- Loyalty Account Details
Hibbett Retail, Inc., a prominent sporting goods and athletic footwear retailer, filed a data breach report in California on September 8, 2026. This disclosure details an incident that took place on April 22, 2026, impacting customer data. The type of breach that led to this exposure was not specified in the public filing.
The reported exposed data categories include Full Name, Email Address, Password or Credential Hash, Mailing Address, Purchase and Order History, Payment Card Information, Phone Number, and Loyalty Account Details. This collection of personal and financial information is commonly targeted by cybercriminals.
The exposure of such sensitive data, particularly Payment Card Information and Password or Credential Hash, can lead to several risks for affected individuals. These include potential financial fraud, unauthorized access to online accounts, and increased susceptibility to sophisticated phishing schemes or identity theft attempts.
According to the filing, the investigation into this incident is currently under monitoring status. Such disclosures are made to regulatory bodies to ensure transparency and public recordkeeping of data security incidents.
Individuals who receive a formal breach notification from Hibbett Retail, Inc. should take proactive steps to protect their information. It is advisable to carefully review bank and credit card statements for any unauthorized transactions. Changing passwords for online accounts, especially if the same credentials were used on other platforms, is a crucial security measure. Additionally, consider placing a fraud alert or credit freeze with major credit reporting agencies and remain vigilant against unexpected communications requesting personal details.