BE

Betterment

High

Betterment's January 2026 breach exposed 1.4M users' personal data without access credentials.

1,435,174 recordsBreach Jan 9, 2026Updated Feb 5, 2026

Exposed data classes

Fields reported as compromised in this breach record.

Dates of birthDevice informationEmail addressesEmployersGeographic locationsJob titlesNamesPhone numbersPhysical addresses

Detailed Analysis

In-depth analysis of the breach and its implications.

In January 2026, Betterment, the automated investment platform, experienced a data breach caused by a social engineering attack. Fraudulent messages were sent to Betterment customers, requesting cryptocurrency transfers by promising high returns. Approximately 1,435,174 records were exposed, containing email addresses, names, geographic information, and more. Nevertheless, no account access credentials or passwords were compromised.

Impact Analysis

Understanding the scope and consequences of this breach.

User Impact
Exposed users may face risks of targeted phishing and fraud.
Business Impact
Reputational damage and increased scrutiny on security practices.
Affected Sectors
  • Finance
  • Technology
Geographic Impact
  • Global participation

What You Should Do

Recommended actions to take in response to this breach.

If You Were Affected

  • Immediately change account-related sensitive information.
  • Be cautious of phishing attempts.
  • Monitor financial statements for unusual transactions.

Preventive Measures

  • Enable multi-factor authentication where applicable.
  • Educate users on recognizing phishing attempts.
  • Regularly review and strengthen cybersecurity measures.

Frequently Asked Questions

Common questions about this breach and what it means for you.

Exposed data included names, email addresses, geographic locations, and more, excluding login credentials.