CSIDB logo
Incident

Eyemart Express, LLC

Incident posture

Attack window
Feb 2026
Location
United States of America
Status
Resolved
CIA posture
Available to members
Updated
2026-08-25 01:01

Linked entities

Victim
Eyemart Express, LLC
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Feb 2026
Discovered
Feb 2026
Disclosed
Feb 2026
Resolved
Feb 2026

Summary

Eyemart Express discovered unauthorized access to its systems, resulting in a breach that exposed customers' personal information including names, addresses, dates of birth, Social Security numbers, health plan details, vision insurance data, and eyeglass purchase or prescription records. The company contained the intrusion the same day, secured its systems, and launched an investigation. Notification letters were sent to affected individuals where addresses were available, and a toll‑free number was provided for confirmation. Free credit monitoring is being offered to those whose Social Security numbers were compromised, and the company is cooperating with federal law enforcement while reviewing and updating its internal security practices.

Motives

Detailed motive labels are available to members.

0 motives

TTPs

Detailed technique labels are available to members.

0 techniques

Description

Eyemart Express discovered a cybersecurity breach on February 13, 2026. The company learned that its systems had been accessed without authorization the day before, on February 12. The breach was contained the same day it was discovered, and systems were secured. An investigation was launched immediately after containment. Eyemart Express is headquartered in Farmers Branch, just north of Dallas, and operates more than 250 stores in 42 states.

The compromised data varied by individual and could include names, addresses, dates of birth, Social Security numbers, health plan details, vision insurance information, and eyeglass purchase or prescription records. Eyemart Express mailed notification letters to affected individuals, except where no address could be determined. Individuals can contact the company at (800) 655‑4635 to confirm whether they were affected. Free credit monitoring is being provided to those whose Social Security numbers were involved in the breach. The company is reviewing and updating its internal training, processes, and procedures while cooperating with federal law enforcement. Eyemart Express advises impacted individuals to monitor account statements and review credit reports for unfamiliar accounts, incorrect personal information, or suspicious inquiries. If such issues are found, the company directs individuals to contact the reporting agency using the information provided with the report and to consult the Federal Trade Commission for guidance on identity theft, fraud alerts, and security freezes.

Sources

Sources available to members: 1 source.

CSIDB