Fiesta Insurance Data Breach Class Action Lawsuit Investigation

Data breach law firm Abington Cole + Ellery is investigating potential legal claims related to the Fiesta Insurance data breach, which potentially affected tens of thousands of individuals and may have exposed names, home addresses, Social Security numbers, dates of birth, driver’s license numbers, passport numbers, financial account data and health-related financial data.

Published July 14, 2026 | Last updated July 15, 2026
Reviewed by Cornelius P. Dukelow | licensed lawyer and registered patent attorney.

JOIN THIS INVESTIGATION: If you are interested in potentially volunteering to serve as a class representative in a class action lawsuit against Fiesta Insurance, please submit your information to be considered:

You may also open the form here: Fiesta Insurance Data Breach Lawsuit Form. An attorney-client relationship is not formed by submitting information through this website.

Fiesta Insurance Data Breach: Key Facts

Company: Fiesta Insurance Franchise Corporation
Location: Las Vegas, Nevada
Incident Type: UNDISCLOSED
Number Affected: TOTAL NOT YET PUBLICLY CONFIRMED (POTENTIALLY TENS OF THOUSANDS)
Data Involved: names, home addresses, Social Security numbers, dates of birth, driver’s license numbers, passport numbers, financial account data and health-related financial data
Date Began: UNDISCLOSED
Date Discovered: June 9, 2025
Date Ended: UNDISCLOSED
Notice Date: July of 2026
Credit Monitoring: Experian IdentityWorks Credit 3B
Status: Class Action Lawsuit Investigation


What happened in the Fiesta Insurance data breach?

Fiesta Insurance Franchise Corporation recently announced a data breach involving sensitive personal information stored within its network. According to the company, Fiesta Insurance learned on June 9, 2025, that certain computer systems had been affected by a cybersecurity incident. Fiesta responded by opening an investigation and retaining third-party cybersecurity specialists to determine what occurred, which systems were involved and whether an unauthorized person accessed or obtained personal information. The investigation included a forensic examination and a review of the files that may have been involved. On June 26, 2026 (more than one year after the incident was discovered) Fiesta Insurance determined that the potentially affected files contained personal information.

The information involved differs from person to person. It may include full names, home addresses, Social Security numbers, dates of birth, driver’s license numbers, passport numbers, financial account information and health-related financial information. Fiesta has not said that every affected person had all these data elements exposed. Its notice also uses cautious language, stating that the files were “potentially” accessed or acquired rather than confirming that every file was copied by the unauthorized party.

Fiesta has not disclosed the total number of people affected nationwide. The Texas Attorney General’s breach database reportedly lists 12,097 affected Texas residents, indicating that the incident affected a substantial number of people in that state alone. Fiesta established a dedicated response line at 844-959-7141, available Monday through Friday from 8:00 a.m. to 5:30 p.m., for individuals seeking additional information about the Fiesta Insurance data breach.


How did the Fiesta Insurance breach occur?

Fiesta Insurance has not publicly explained how the attacker entered its network. The company’s notice does not identify phishing, stolen credentials, malware, a software vulnerability or a third-party vendor as the cause. It also does not characterize the event as a ransomware attack.


When did the Fiesta Insurance breach occur?

Fiesta Insurance discovered the cybersecurity incident on June 9, 2025. The company has not disclosed when the unauthorized access began or ended, so the breach’s exact occurrence dates remain unknown.


How many people were affected by the Fiesta Insurance breach?

Fiesta Insurance has not disclosed the total number of people affected nationwide. However, the Texas Attorney General reports that 12,097 Texas residents were affected.


What information was exposed in the Fiesta Insurance breach?

  • Breached data reportedly may include, but is not necessarily limited to:
    • names
    • home addresses
    • Social Security numbers
    • dates of birth
    • driver’s license numbers
    • passport numbers
    • financial account information
    • health-related financial information

Has Fiesta Insurance offered free credit monitoring and/or identity theft protection services?

Yes. Fiesta Insurance is offering affected individuals a complimentary membership in Experian IdentityWorks Credit 3B, which includes three-bureau credit monitoring, identity-restoration assistance, and up to $1 million in identity-theft insurance, subject to the program’s terms and exclusions.


Fiesta Insurance data breach timeline:

Date Event
UNDISCLOSED Unauthorized activity began.
June 9, 2025 Fiesta Insurance discovered the incident.
UNDISCLOSED Unauthorized activity ended.
June 26, 2026 Data breach investigation concluded.
July of 2026 Fiesta Insurance began notifying affected individuals.

Who is Fiesta Insurance?

Fiesta Insurance, also known as Fiesta Auto Insurance and Tax Service, is a Las Vegas-based insurance agency and tax-preparation business founded in 1999. The company began with four retail agencies and adopted a franchise model in 2006. Through independently operated locations across several states, Fiesta primarily helps consumers obtain non-standard auto insurance from third-party carriers. Its offices may also offer homeowners, renters, motorcycle, boat and commercial insurance.

In addition to insurance services, Fiesta provides personal and business tax preparation, including federal and state filings, prior-year returns, extensions, electronic filing and related bookkeeping assistance. The specific products and services available may vary by location.


What should affected individuals do?

Affected individuals should consider placing a free credit freeze with Equifax, Experian and TransUnion, especially because Social Security numbers may have been exposed. They should also review their credit reports through AnnualCreditReport.com, monitor financial and health-related account statements, and promptly report unfamiliar transactions or accounts. A fraud alert provides additional protection by requiring lenders to verify the applicant’s identity.

Individuals should also watch for phishing messages that mention Fiesta Insurance, avoid providing information to unsolicited callers, and update reused passwords. Suspected identity theft should be reported at IdentityTheft.gov, which provides a personalized recovery plan. Questions about the breach may be directed to Fiesta’s response line at 844-959-7141.


Fiesta Insurance Data Breach Notice

The notice describes the Fiesta Insurance data breach, including the type of information that may have been involved and the steps offered to affected individuals.

Open the Fiesta Insurance Data Breach Notice in a New Tab


Sources and additional information about the data breach:


Class Action FAQ

A class action lawsuit is a case brought on behalf of a group of people who were harmed in a similar way by the same company or organization.

A class representative, sometimes called a named plaintiff or lead plaintiff, is a person who volunteers to bring the lawsuit on behalf of the larger group. They help represent the interests of everyone in the class. There may be more than one class representative in a class action.

A person who was harmed may start a class action if many other people were harmed in a similar way.

Usually, no. In many class action cases, the lawyers are paid only if the case is successful.

Sometimes you do not need to do anything. Other times, you may need to submit a claim form by a deadline to receive money or benefits.


data types, numbers, timeline, dates



About This Data Breach Resource

This page was created to give affected individuals and researchers a clear, comprehensive explanation of the Fiesta Insurance data breach. It summarizes what is currently known about the incident, including the timeline, how the breach was discovered, the types of information involved, the number of people affected when available, important notice dates, and steps individuals may want to take after receiving a data breach notification.

This resource is independently written and organized to help readers understand the breach without having to review multiple notices, state attorney general filings, company statements, and related materials. When available, this page relies on primary sources and identifies key facts, unanswered questions, and updates as new information becomes public.

This page is especially relevant for readers searching for information about the Fiesta Insurance data breach, Fiesta Insurance data breach notice, Fiesta Insurance class action investigation, what information was exposed, how many people were affected, and what affected individuals should do next.

Abington Cole + Ellery reviews data breach incidents involving sensitive personal information, financial information, and protected health information. This page is intended to help affected individuals understand the publicly reported facts, the types of information that may have been involved, and practical steps that may reduce the risk of identity theft or medical identity theft.

The information on this webpage is provided for general informational purposes only and does not constitute legal advice. Nothing on this page should be relied upon as legal advice for any particular situation. Submitting information through this page does not create an attorney-client relationship.

For more information about steps you can take to possibly reduce the risk harm arising from a data breach, please review the following article: What are some steps you can take if you've been the victim of a data breach?

This website is not associated with nor authorized by Fiesta Insurance or any affiliated companies. If you have received any other data breach notifications, you may want to review Abington Cole + Ellery's current list of data breach investigations.