DataBreachCaseFile.com
Investigation OpenTexas AG filing · July 21, 2026

The Estée Lauder Companies Reports Data Breach to Texas AG

The Estée Lauder Companies, a global beauty retailer, reported a data security incident to the Texas Attorney General. The filing indicates unauthorized access to their systems, potentially exposing personal information. Those who received direct notification letters from the company are advised that their data may have been involved.

State
Texas
Breach date
August 9, 2025
Reported
July 21, 2026

The Estée Lauder Companies, a prominent global retailer in the prestige beauty sector, filed a data breach notification with the Texas Attorney General on July 21, 2026. This official filing confirms a security incident involving unauthorized access to the company's internal systems. The breach date is listed as August 9, 2025, with the company currently investigating the full scope of the event.

As a major consumer-facing entity, The Estée Lauder Companies maintains extensive databases that support its e-commerce and marketing operations, including customer profiles, loyalty program details, and transactional records. The unauthorized access may have exposed personal information stored within these systems. While the specific categories of data involved were not detailed in the public filing, those who received a direct notification letter from Estée Lauder should refer to that document for personalized details.

The purpose of these official notifications is to inform potentially affected individuals directly. If you have received a letter from The Estée Lauder Companies regarding this incident, it signifies that your personal information was likely part of the data held in the systems that experienced unauthorized access. The company is required to provide specific details about the data types involved in your individual notification.

In response to any data security incident, it is generally recommended to remain vigilant for unusual activity. Review statements from your financial institutions and monitor your credit reports for any unfamiliar transactions or accounts. Be cautious of unsolicited communications that ask for personal details, as these could be phishing attempts.

Consider changing passwords for your online accounts, especially if you reused passwords across multiple services. While the specific impact varies per individual, taking proactive steps can help mitigate potential risks associated with compromised personal information.

More Texas data breach cases