Were you recently affected by a data breach?

Libertas Funding Data Breach

Libertas Funding, LLC, a Greenwich, Connecticut business financing company, began sending data breach notices on October 1, 2026 after detecting suspicious activity in September. Names and Social Security numbers were involved.

Libertas Funding
Date of Breach: September 9, 2026 (detected); notices sent October 1, 2026
CAU logo

Who was affected:

Clients of Libertas Funding

Impacted Data:

Name, contact information, date of birth and Social Security number

Libertas Funding, LLC, a Greenwich, Connecticut business financing company, began sending data breach notices on October 1, 2026 after detecting suspicious activity in its systems in September 2026.

Libertas Funding, LLC’s Data Breach Investigation

Libertas Funding, LLC is a Greenwich, Connecticut company that provides revenue-based financing to small and mid-sized businesses. In a notice dated October 1, 2026 and filed with the Massachusetts Attorney General, the company told people that it detected suspicious activity in its IT environment on or about September 9, 2026. It says it took steps to investigate and secure its systems, activated its incident response procedures, hired outside cybersecurity experts and notified law enforcement.

According to the notice, the investigation recently determined that personal information about the recipient was contained in files acquired by an unauthorized party. That wording matters. It indicates that files were taken, not merely that a system was accessed. The company says it is not aware of any misuse of the information so far, and that statement reflects what it knew at the time of the letter.

The notice states that the information involved was the recipient’s name, contact information, date of birth and Social Security number. It explains that the company held this information because the recipient applied for a loan product on behalf of a business, and the company was required to collect it as part of its regulatory obligations. In other words, people affected are likely to include business owners, guarantors and others who signed or applied on behalf of a company, not only individuals who borrowed personally.

The combination of a Social Security number and a date of birth is among the most useful sets of data for identity thieves, because it can be used to open credit accounts, file fraudulent tax returns, or pass identity checks. That is why exposure of these two items together generally calls for more protective steps than a leak of names and email addresses alone. These are general risks tied to this kind of data, not confirmed facts about what happened to any individual’s information.

The company has not published the number of people affected in the letter reviewed here, and it has not said how the unauthorized party gained access or whether any ransom demand was made. We are not guessing at those details. Regulators in other states may publish counts as their own filings become available.

As a response, Libertas says it has strengthened its security measures, enhanced security monitoring and increased employee awareness of data security protections. It is offering single bureau credit monitoring, a credit report and a credit score service for 24 months from the date of enrollment, plus fraud assistance through Cyberscout, a TransUnion company. The enrollment deadline stated in the letter is February 22, 2027, and recipients must enroll themselves using the unique code in their own letter.

Financial services firms are an attractive target because the applications they receive contain identifiers, bank details and business information in one place. Business owners who apply for financing often provide personal details to prove identity and creditworthiness, which means a single file can connect a person’s name, birth date, Social Security number and business interests. Anyone who applied for financing through the company should watch for a letter.

The letter recommends remaining vigilant for fraud and identity theft over the next 12 to 24 months by reviewing account statements and credit reports. If you received a notice, keep it, use the free monitoring offered, and consider a credit freeze. We will update this page if the company or a regulator releases more detail about the incident.

When Did This Breach Occur?

Libertas Funding, LLC says it detected suspicious activity on or about September 9, 2026, and sent notification letters dated October 1, 2026 after its investigation determined that personal information was in files acquired by an unauthorized party.

What Information Was Breached?

The company’s notice states that the information involved was each recipient’s name, contact information, date of birth and Social Security number. The company says it held the information because the person applied for a loan product on behalf of a business.

What You Can Do

If you received a notice from Libertas Funding, LLC, consider these steps:

  • Enroll in the complimentary credit monitoring and Cyberscout fraud assistance using the code in your letter, before the February 22, 2027 deadline.
  • Review your bank and card statements and any tax account activity for anything you do not recognize.
  • Check your credit reports for free at annualcreditreport.com and consider a fraud alert or credit freeze with Equifax, Experian and TransUnion, since a Social Security number was involved.
  • Consider requesting an IRS Identity Protection PIN, and be cautious of calls, texts and emails that mention your business financing.
  • Report suspected identity theft to the Federal Trade Commission and your state Attorney General.

File a Data Breach Lawsuit Against Libertas Funding, LLC

If you received a notice that your information may have been involved in a Libertas Funding data breach, or you believe your information was put at risk, you may be entitled to compensation. Financial companies are expected to take reasonable steps to protect the personal information they hold, and people affected by a breach can face a lasting risk of identity theft and fraud.

Contact us at Class Action U, where we’ll connect you with a lawyer skilled in class action lawsuits. If you’ve been contacted about this breach, received notice, or discovered you were impacted, fill out our quick, easy, and secure form to sign up. There is no cost to reach out to our legal partner and no obligation after speaking with someone from our team.

Were you recently affected by a data breach?
Other Data Breaches
Date of Breach: Reported to the Texas Attorney General on October 2, 2026; incident date not disclosed
Date of Breach: Determined on or about September 14, 2026; incident dates not disclosed
Date of Breach: Notice dated September 28, 2026; incident dates not disclosed
Related News

Frequently Asked Questions

A data breach occurs when sensitive, confidential, or protected information is accessed, stolen, or disclosed without authorization. Data breaches often occur through phishing emails, malware, weak passwords, insider threats, or unsecured databases. Indicators of a data breach can include unexpected password resets, suspicious account activity, unauthorized transactions, or notifications from companies about compromised information.If you suspect your data has been compromised, you must take measures and act quickly. Change passwords, enable two-factor authentication, review your financial accounts for unusual activity and consider freezing your credit.

Once stolen, your personal information may be sold on the dark web or used for identity theft and financial fraud. In some cases, hackers use the data to extort companies or launch further attacks. Victims often face long-term risks, including damage to credit and privacy.

If you receive a data breach notification, don’t ignore it. Immediately change passwords for the affected account and any others that share credentials. Enroll in any free credit monitoring services offered and monitor financial statements closely.

To pursue a data breach claim, you’ll need documentation showing your information was compromised and proof of resulting harm, such as fraudulent charges, credit score damage, or identity theft reports. Notification letters, financial records, and communication with the breached company can help support your claim.

Yes. If a company fails to protect consumer data or delays notifying victims, it may be held liable under state and federal privacy laws. Many victims join class action lawsuits to recover financial losses and hold negligent organizations accountable.

Data breach settlements vary widely depending on the size of the breach, type of data compromised, and damages suffered by victims. Payouts may include cash compensation, identity theft protection, or reimbursement for losses. Many settlements range from a few hundred to several thousand dollars per person. A skilled data breach lawyer can guide victims through the complex legal process, ensuring their rights are protected. If you’ve received a data breach notification or believe your personal data was exposed, you may be eligible for compensation. Contact Class Action U to learn more about how to join a data breach lawsuit and understand the process of filing.