Five Below reported an unauthorized access to a company-issued employee computer that was quickly contained and did not expose personally identifiable information.

Key Highlights:

  • Detected anomalous activity July 15, 2026; forensic investigation and third-party cybersecurity experts engaged immediately.
  • Threat actor used social engineering on July 14, 2026 to access the employee's device and exfiltrated several files.
  • Company believes access was contained to that employee's environment and no PII was accessed or exfiltrated.
  • Based on current information, incident is not expected to have a material impact on operations, strategy, or financial condition.

Original SEC Filing:

This is an AI-powered summary. It may contain inaccuracies. Consider verifying important information with the source. Please note this summary is solely based on documents filed with the SEC.