DriveWealth Data Breach Class Action Lawsuit Investigation

Data breach law firm Abington Cole + Ellery is investigating potential legal claims related to the DriveWealth data breach, which reportedly affected THOUSANDS of individuals and may have exposed Full name, email address, telephone number, and postal address, Investor profile information, including income and net asset ranges, Employment information, W-8 or W-9 tax status and country of taxation, DriveWealth account number, Aggregate portfolio value, Cash balance and buying power snapshots.


JOIN THIS INVESTIGATION: If you are interested in potentially volunteering to serve as a class representative in a class action lawsuit against DriveWealth, please submit your information to be considered:

You may also open the form here: DriveWealth Data Breach Lawsuit Form. An attorney-client relationship is not formed by submitting information through this website.

DriveWealth Data Breach: Key Facts

Company: DriveWealth
Location: New York, New York
Incident Type: Data Breach
Number Affected: TENS OF THOUSANDS
Data Involved: Full name, email address, telephone number, and postal address, Investor profile information, including income and net asset ranges, Employment information, W-8 or W-9 tax status and country of taxation, DriveWealth account number, Aggregate portfolio value, Cash balance and buying power snapshots
Date Began: September 4, 2026
Date Discovered: September 4 or 5, 2026
Date Ended: September 5, 2026
Notice Date: September 30, 2026
Credit Monitoring: 12 Months of Cyberscout
Status: Class Action Lawsuit Investigation


What happened in the DriveWealth data breach?

DriveWealth disclosed a data breach involving unauthorized access to its network on September 4–5, 2026. The company confirmed that personal information was taken from its systems. Affected individuals may know DriveWealth through the investment platform or financial institution that used its services to establish their brokerage accounts. Sources: DriveWealth US Customer Notification

Reporting that quotes DriveWealth attributes the intrusion to a social engineering campaign, a method that uses deception to gain access to information or systems. The publicly available company notices reviewed do not explain the precise technical sequence of the attack. Sources: FinanceFeeds: DriveWealth Blames Social Engineering Campaign for Revolut Customer Data Breach

DriveWealth’s notification filed with the California Attorney General states that the compromise was contained on September 5, 2026. Its investigation and document review concluded on September 28, 2026. California’s public database lists the breach as reported on September 30, 2026. Sources: California Attorney General Submitted Breach Notification Sample

Partner disclosures show that the information involved differs among customers. Stake identified contact information, tax status, account numbers, and certain financial snapshots. Hatch identified contact details, investor profile information, cash balances, and portfolio values. These disclosures describe particular customer groups and should not be treated as a universal list for everyone affected. Sources: Stake: DriveWealth Data Security Incident; Hatch: DriveWealth cybersecurity incident

DriveWealth states that it identified no unauthorized trading, transfers, withdrawals, or alterations to account balances or positions. It also says its production brokerage systems and customer platform continued operating normally. Its public notice reports no known identity fraud or misuse directly resulting from the incident, although affected individuals should continue monitoring their accounts. Source: DriveWealth US Customer Notification

People with inactive or closed accounts may also receive notifications. Hatch explains that DriveWealth retains certain customer records after account closure to meet regulatory requirements. Closing an investment account therefore does not necessarily mean that the information previously provided to the brokerage has been deleted. Source: Hatch: DriveWealth cybersecurity incident


How did the DriveWealth data breach occur?

According to reporting quoting DriveWealth, attackers used social engineering to obtain unauthorized network access. The public disclosures reviewed do not establish the exact deception used, credentials obtained, or security controls bypassed. Source: FinanceFeeds: DriveWealth Blames Social Engineering Campaign for Revolut Customer Data Breach


When did the DriveWealth data breach occur?

The unauthorized access occurred between September 4 and September 5, 2026. These are the incident dates, rather than the dates customers necessarily received notifications. Source: DriveWealth US Customer Notification


How many people were affected by the DriveWealth data breach?

Tens of thousands of individuals were affected by the DriveWealth data breach. A verified national total was not located as of October 1, 2026. The California sample notice reports approximately 62,074 Rhode Island residents affected. Other state totals remain unconfirmed. Sources: California Attorney General Submitted Breach Notification Sample


What information was exposed in the DriveWealth data breach?


Has DriveWealth offered free credit monitoring and/or identity theft protection services?

Yes. The California sample notice offers 12 months of free monitoring of all three major credit bureaus, credit report services, and proactive fraud assistance through Cyberscout, a TransUnion company. Enrollment is required within 90 days of the letter’s date. Recipients should check their own notices for eligibility and enrollment instructions. Source: California Attorney General Submitted Breach Notification Sample


DriveWealth Data Breach Timeline

Date Event
September 4–5, 2026 Unauthorized access occurred.
September 5, 2026 DriveWealth contained the compromise.
September 21, 2026 Stake published its incident disclosure and said it was notifying affected customers by email.
September 28, 2026 DriveWealth completed its investigation and document review.
September 30, 2026 California’s database records the breach report.

Who is DriveWealth?

DriveWealth, LLC is a financial technology company and registered broker dealer headquartered in New York City. It provides the brokerage infrastructure that banks, investment firms, financial apps, and other businesses use to offer investing services to their customers. Its platform supports U.S. stocks, exchange traded funds, mutual funds, fixed income investments, options, and fractional share investing. DriveWealth also provides services for account opening, funding, statements, and tax reporting. The company is a member of the Financial Industry Regulatory Authority (FINRA) and the Securities Investor Protection Corporation (SIPC). DriveWealth Website


What should you do if you received a DriveWealth data breach letter?

    • Review and save the notification. Identify the information listed as affected and keep a copy for future reference. Questions can be directed to DriveWealth’s published response line at 1-844-770-4353, Monday through Friday, 8 a.m.–8 p.m. Eastern, excluding holidays.
    • Check the monitoring offer promptly. Follow the enrollment instructions and deadline in the personal notification. The California sample specifies enrollment within 90 days; its enrollment address and access code are redacted.
    • Secure investment and email accounts. Use unique passwords, enable multifactor authentication, and activate available account alerts. Review trades, withdrawals, transfers, and changes to contact information. Report unfamiliar activity immediately through the financial institution’s official app or verified contact information.
    • Watch for convincing impersonation attempts. Unexpected messages may reference personal details or investments to appear credible. Do not share passwords or verification codes, install software at a caller’s request, or move funds because someone claims the account needs protection. Verify requests independently through the institution’s official website or app.
    • Consider freezing credit files. A free security freeze helps prevent new credit accounts from being opened using someone else’s identity. Contact Equifax, Experian, and TransUnion separately. A freeze remains until lifted and may need to be temporarily lifted when applying for credit.
    • Consider a fraud alert. An initial fraud alert directs prospective creditors to verify identity before extending credit. It is free, lasts one year, and can be renewed. Contact one nationwide credit bureau, which must notify the other two.
    • Check credit reports regularly. Free weekly reports from all three nationwide bureaus are available at AnnualCreditReport.com. Look for unfamiliar accounts, unauthorized inquiries, or inaccurate information, and dispute suspicious entries with the bureau and the business that supplied them.
    • Respond quickly to suspected identity theft. Notify the affected financial institution and report identity theft at IdentityTheft.gov, which provides a personalized recovery plan. Preserve suspicious messages, transaction records, correspondence, and documentation of related expenses.


DriveWealth Data Breach Notice

The notice describes the DriveWealth data breach, including the type of information that may have been involved and the steps offered to affected individuals.

Open the DriveWealth Data Breach Notice in a New Tab


Sources & Additional Information About the DriveWealth Data Breach


Class Action FAQ

A class action lawsuit is a case brought on behalf of a group of people who were harmed in a similar way by the same company or organization.

A class representative, sometimes called a named plaintiff or lead plaintiff, is a person who volunteers to bring the lawsuit on behalf of the larger group. They help represent the interests of everyone in the class. There may be more than one class representative in a class action.

A person who was harmed may start a class action if many other people were harmed in a similar way.

Usually, no. In many class action cases, the lawyers are paid only if the case is successful.

Sometimes you do not need to do anything. Other times, you may need to submit a claim form by a deadline to receive money or benefits.


Infographic summarizing the DriveWealth data breach, including the number of affected individuals, the categories of information involved, and the publicly confirmed reporting timeline.
DriveWealth data breach infographic summarizing the number of people affected, the types of information involved, and the publicly confirmed timeline. Information current as of September 30, 2026.


About This Data Breach Resource

This page was created to give affected individuals and researchers a clear, comprehensive explanation of the DriveWealth data breach. It summarizes what is currently known about the incident, including the timeline, how the breach was discovered, the types of information involved, the number of people affected when available, important notice dates, and steps individuals may want to take after receiving a data breach notification.

This resource is independently written and organized to help readers understand the breach without having to review multiple notices, state attorney general filings, company statements, and related materials. When available, this page relies on primary sources and identifies key facts, unanswered questions, and updates as new information becomes public.

This page is especially relevant for readers searching for information about the DriveWealth data breach, DriveWealth data breach notice, DriveWealth class action investigation, what information was exposed, how many people were affected, and what affected individuals should do next.

Abington Cole + Ellery reviews data breach incidents involving sensitive personal information, financial information, and protected health information. This page is intended to help affected individuals understand the publicly reported facts, the types of information that may have been involved, and practical steps that may reduce the risk of identity theft or medical identity theft.

The information on this webpage is provided for general informational purposes only and does not constitute legal advice. Nothing on this page should be relied upon as legal advice for any particular situation. Submitting information through this page does not create an attorney-client relationship.

For more information about steps you can take to possibly reduce the risk harm arising from a data breach, please review the following article: What are some steps you can take if you've been the victim of a data breach?

This website is not associated with nor authorized by DriveWealth or any affiliated companies. If you have received any other data breach notifications, you may want to review Abington Cole + Ellery's current list of data breach investigations.