Chick-fil-A Issues Cybersecurity Alert
Chick-fil-A has alerted certain customers with rewards accounts that their personal details might have been exposed in a recent cybersecurity incident.
A notice revealed that from June 17 to June 19, 2026, an unauthorized party executed an automated attack targeting the company’s website and mobile application, leveraging account credentials.
The breach potentially involved users’ names, email addresses, membership numbers, mobile payment numbers, QR codes, and the last four digits of credit or debit card numbers.
Other information might be included as well, contingent on what was stored in users’ accounts, like gift card balances, dates of birth, phone numbers, and addresses.
“Chick-fil-A took immediate action to prevent further fraudulent activity,” the company stated.
In response, Chick-fil-A implemented several protective measures. These included logging out affected accounts, removing saved payment options, resetting passwords, and enabling customers to choose new strong passwords via a link included in the notification.
The company has also reinstated affected loyalty balances and offered additional compensation to mitigate the effects of the breach.
“As an extra thank you for being a loyal Chick-fil-A customer, we’ve added perks to your account,” the restaurant chain mentioned.
The notification provides further details and guidance specific to the states of affected customers, emphasizing the right to report any suspected fraud or identity theft.
According to the company’s message, the impacted states include Washington, D.C., Iowa, Maryland, Massachusetts, New Mexico, New York, North Carolina, Oregon, Rhode Island, and Vermont.
If there are any questions, customers can reach out to Chick-fil-A’s dedicated support line at (888) 201-5329. The support hours are Monday through Friday, from 9 a.m. to 9 p.m. ET.






