DisclosureLens
HackingFinancial ServicesTechnologyFinanceCustomer Data InvolvedDelayed DiscoveryPIIIdentity (basic)LowContained

Payactiv

bd_f8b2d1de52f6d894 · schema v1 · pii pii-v1

Severity

Low

Discovered

Aug 19, 2025

Filed

Oct 11, 2025

To disclose

8 weeks

Affected

Not disclosed

Linked

11 filings

Confidence

66%
Full breach record for Payactiv

Payactiv, Inc. reported a cybersecurity incident where an unauthorized actor viewed information stored in its systems between April 3, 2025, and August 20, 2025. The company discovered the incident on August 19, 2025. Affected individuals received 12 months of complimentary credit monitoring and identity theft protection services.

Incident timeline

undetected · 138 days
discovery → filing · 8 weeks / 53 days

Apr 3, 2025

Begins

Aug 19, 2025

Discovered

Oct 11, 2025

Filed

vs. sector median

2 wks faster

This filing is one of 11 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (10) · sorted by filing gap

Show 6 more filingsup to 88d gap

Filing propagation · 11 filings · 11 states

View merged incident ↗

Pattern: first filing Sep 25 (IN), last Jan 7 (TX) — a 104-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.