Top fast food chain report: Jersey Mike’s ranks first
After 11 years in business, Chick-fil-A is no longer the top-rated quick-service restaurant, according to the U.S. Customer Satisfaction Index.
A recent cyber attack may have exposed the personal information of Chick-fil-A One loyalty members.
The company confirmed to USA TODAY that it recently identified a “security incident that may have impacted a limited number of Chick-fil-A One loyalty accounts.”
“Once we discovered the issue, we immediately addressed it and took steps to secure and restore accounts. We are also in direct contact with all customers who may have been affected,” the company said in an emailed statement to USA TODAY. “We sincerely apologize for the inconvenience and concern caused by this situation. We will continue to work hard every day to maintain the trust of our customers.”
Here’s what we know about cyberattacks and data breaches and who is affected.
Who is affected by the Chick-fil-A cyber attack?
The company sent a letter to potentially affected customers on July 20, saying it had identified “suspicious login activity” against certain Chick-fil-A One accounts. The cyberattack affected customers in nine states and Washington, D.C., the letter said. The nine states are Iowa, Maryland, Massachusetts, New Mexico, New York, North Carolina, Oregon, Rhode Island, and Vermont.
After investigating, the company determined that an “unauthorized party” launched an attack on its website and mobile app between June 17 and June 19 using account credentials obtained from “third-party sources.”
What information was leaked in the Chick-fil-A cyberattack?
The compromised information may have included names, email addresses, Chick-fil-A One membership numbers and mobile phone billing numbers, the last four digits of credit and debit card numbers, and the amount of Chick-fil-A credits in user accounts. In addition, if stored in a user’s account, that information may also include the account holder’s date of birth, phone number, and address.
Chick-fil-A said in the letter that restored customers’ Chick-fil-A One account balances were affected and that it added benefits to their accounts as an additional way to thank customers. The chain also said it “continues to strengthen its security oversight and fraud controls” to minimize the risk of similar incidents occurring in the future.
What can affected customers do?
Chick-fil-A says it has reset Chick-fil-A passwords for affected users and urges users to update their passwords as soon as possible.
Gabe Hauari is USA TODAY’s national trends news reporter. You can follow him at X @gabehauari Or email Gdhauari@usatoday.com.

