PetSmart: PETCO DATA BREACH ALERT: Edelson Lechtzin LLP is Investigating Data Privacy Claims on Behalf of Petco Health and Wellness Company, Inc. Customers

PetSmart: PETCO DATA BREACH ALERT: Edelson Lechtzin LLP is Investigating Data Privacy Claims on Behalf of Petco Health and Wellness Company, Inc. Customers

NEWTOWN, Pa., Dec. 07, 2025 (GLOBE NEWSWIRE) -- Edelson Lechtzin LLP, a national class action law firm, is investigating data breach claims regarding a recent cybersecurity incident at Petco Health and Wellness Company, Inc. (“Petco”).

If you would like to discuss your legal options with a lawyer, please click HERE.

About Petco Health and Wellness Company, Inc

Petco, headquartered in San Diego, California, is a major U.S. pet care retailer offering food, supplies, and services such as grooming, training, and veterinary care.

What happened?

Petco recently learned that a setting within one of its software applications accidentally made some files viewable on the internet. Once the problem was identified, the company launched an investigation and locked down the exposed material. Petco has published a notification letter regarding this data breach, but it has not disclosed what types of personal information were exposed in this data security lapse.

How can I protect my personal data?

If you receive a data breach notification regarding Petco, you should take steps to protect yourself against identity theft and fraud. Such measures include regularly reviewing your account statements and monitoring your credit reports for any suspicious or unauthorized activity.

Edelson Lechtzin LLP is investigating a class action lawsuit to seek legal remedies for individuals whose sensitive personal data may have been compromised by the Petco data breach.

For more information, please con

Source: https://www.globenewswire.com/news-release/2025/12/08/3201176/0/en/PETCO-DATA-BREACH-ALERT-Edelson-Lechtzin-LLP-is-Investigating-Data-Privacy-Claims-on-Behalf-of-Petco-Health-and-Wellness-Company-Inc-Customers.html

PetSmart cybersecurity rating report: https://www.rankiteo.com/company/petsmart

"id": "PET1765166324",
"linkid": "petsmart",
"type": "Breach",
"date": "12/2025",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': None,
                                     'industry': 'Pet Care',
                                     'location': 'San Diego, California, USA',
                                     'name': 'Petco Health and Wellness '
                                             'Company, Inc.',
                                     'size': None,
                                     'type': 'Retailer'}],
              'attack_vector': 'Misconfiguration',
              'customer_advisories': 'Take steps to protect against identity '
                                     'theft and fraud, including reviewing '
                                     'account statements and monitoring credit '
                                     'reports',
              'data_breach': {'data_encryption': None,
                              'data_exfiltration': None,
                              'file_types_exposed': None,
                              'number_of_records_exposed': None,
                              'personally_identifiable_information': True,
                              'sensitivity_of_data': 'Personal information '
                                                     '(unspecified)',
                              'type_of_data_compromised': None},
              'date_publicly_disclosed': '2025-12-07',
              'description': 'Petco recently learned that a setting within one '
                             'of its software applications accidentally made '
                             'some files viewable on the internet. Once the '
                             'problem was identified, the company launched an '
                             'investigation and locked down the exposed '
                             'material. Petco has published a notification '
                             'letter regarding this data breach, but it has '
                             'not disclosed what types of personal information '
                             'were exposed in this data security lapse.',
              'impact': {'brand_reputation_impact': None,
                         'conversion_rate_impact': None,
                         'customer_complaints': None,
                         'data_compromised': True,
                         'downtime': None,
                         'financial_loss': None,
                         'identity_theft_risk': True,
                         'legal_liabilities': True,
                         'operational_impact': None,
                         'payment_information_risk': None,
                         'revenue_loss': None,
                         'systems_affected': None},
              'initial_access_broker': {'backdoors_established': None,
                                        'data_sold_on_dark_web': None,
                                        'entry_point': None,
                                        'high_value_targets': None,
                                        'reconnaissance_period': None},
              'investigation_status': 'Ongoing',
              'post_incident_analysis': {'corrective_actions': None,
                                         'root_causes': None},
              'ransomware': {'data_encryption': None,
                             'data_exfiltration': None,
                             'ransom_demanded': None,
                             'ransom_paid': None,
                             'ransomware_strain': None},
              'recommendations': 'Regularly review account statements and '
                                 'monitor credit reports for suspicious '
                                 'activity',
              'references': [{'date_accessed': '2025-12-07',
                              'source': 'GLOBE NEWSWIRE',
                              'url': None}],
              'regulatory_compliance': {'fines_imposed': None,
                                        'legal_actions': 'Class action lawsuit '
                                                         'investigation',
                                        'regulations_violated': None,
                                        'regulatory_notifications': None},
              'response': {'adaptive_behavioral_waf': None,
                           'communication_strategy': 'Published a notification '
                                                     'letter',
                           'containment_measures': 'Locked down the exposed '
                                                   'material',
                           'enhanced_monitoring': None,
                           'incident_response_plan_activated': True,
                           'law_enforcement_notified': None,
                           'network_segmentation': None,
                           'on_demand_scrubbing_services': None,
                           'recovery_measures': None,
                           'remediation_measures': None,
                           'third_party_assistance': None},
              'title': 'Petco Data Breach Investigation',
              'type': 'Data Breach',
              'vulnerability_exploited': 'Software misconfiguration exposing '
                                         'files to the internet'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.