The Estée Lauder Companies (Oracle) Data Breach in Washington
The Estée Lauder Companies (Oracle) has reported a data security incident to the Washington Attorney General, indicating that personal information was compromised. The company is currently investigating the breach, which may put affected individuals at risk of identity theft or fraud.
- State
- Washington
- Reported
- July 17, 2026
The Estée Lauder Companies, operating with Oracle infrastructure, filed a data breach notification with the Washington Attorney General on July 17, 2026. This report confirms a security incident affecting personal information within its enterprise systems.
The official filing, as a public record, does not specify the exact nature of the breach or the precise categories of personal information involved. However, it does confirm that an unauthorized event led to the compromise of data managed by the company.
When personal information is exposed in such incidents, affected individuals may face increased risks. These risks include potential identity theft, various forms of financial fraud, and targeted phishing scams designed to exploit compromised data.
To safeguard against these potential threats, it is important to remain vigilant. Regularly review all your online accounts and financial statements for any unusual or unauthorized activity. Consider updating passwords for critical online services and exercise caution when receiving unsolicited communications, especially those requesting personal details.
Monitoring your credit reports for unexpected inquiries or new accounts can also provide an early warning of potential misuse of your information. Staying alert to these common security practices is a proactive step in protecting your data.
What to do if you were affected
These general steps can help limit the risk of identity theft and fraud after any data breach.
Stay alert to targeted scams
Be cautious of calls, texts, or emails that reference this breach. Legitimate organizations won't ask you to confirm sensitive details through an unsolicited message.
Keep your notification letter
Save the notice you received. It documents that your information was involved and is often needed to enroll in any credit monitoring offered or to join a related legal claim.
Related data breach cases
- Cornerstone Staffing Solutions, Inc.
- zHealth, Inc.
- Quatrro Business Support Services, Inc.
- Hibbett Retail, Inc.
- Catalyst Brands LLC
- LHC Group, Inc.
- Bimbo Bakeries USA (Oracle)
- The Lighthouse for the Blind, Inc.
- Virta Health Corp. and Virta Medical, PC (Department of Health And Human Services)
- Mogren, Glessner & Ahrens, P.S.
- See’s Candies, Inc.
- RB American Group LLC
- Greystar Real Estate Partners, LLC
- Cascade Coffee, LLC