
On Dec. 29, 2025, SoFi Technologies, Inc., a major San Francisco-based financial technology company, experienced a data breach that affected 38,049 Washington residents.
The incident was the result of a social engineering attack that allowed an unauthorized individual to access internal SoFi systems between Dec. 29, 2025, and Jan. 3, 2026. The breach was discovered on Jan. 2, 2026, and SoFi initiated its incident response protocols.
The unauthorized actor obtained personally identifiable information (PII) including names, full dates of birth, addresses, email addresses, phone numbers, and employment and education information. Importantly, SoFi confirmed that no account passwords, debit or credit card numbers, or account numbers were accessed.
The breach was disclosed to the Washington Attorney General on Jan. 26, 2026. The company has notified affected individuals by written mail.
Upon discovering the breach, SoFi activated its incident response process, taking action to halt the unauthorized activity and reinforce its security measures. The company engaged CrowdStrike, a leading cybersecurity firm, along with other external advisors to investigate the breach and assess the scope of data exposure.
SoFi has implemented additional monitoring and safeguards on affected accounts to prevent further unauthorized access. Members may encounter extra verification steps when contacting customer support or making changes to their accounts.
SoFi has communicated directly with affected individuals, providing guidance on how to remain vigilant, monitor account statements, and protect against potential fraud or identity theft.
Those impacted are encouraged to:
SoFi has provided a dedicated phone line at 844-820-7634 for affected members seeking additional support.








.webp)
.webp)
.webp)

.webp)
.webp)
.webp)
.webp)