
CybersecurityJul 22, 2026, 05:21 PM
Five Below Reports Contained Cybersecurity Incident
AI Summary
Five Below, Inc. reported a cybersecurity incident detected on July 15, 2026, involving unauthorized access to an employee's company-issued computer. A forensic investigation determined that a threat actor used social engineering to exfiltrate files on July 14, 2026. The company believes its rapid response successfully contained the incident, which was limited to the affected employee's environment, with no personally identifiable information accessed and no material impact expected on its business or financials.
Key Highlights
- Five Below identified anomalous activity on an employee's computer on July 15, 2026.
- A threat actor gained unauthorized access on July 14, 2026, using social engineering.
- The incident was limited to one employee's computer environment.
- No personally identifiable information (PII) was accessed or exfiltrated.
- The company believes the incident did not affect other systems or data.
- Five Below does not expect a material impact on its business, operations, or financials.
Price Impact
More from FIVE