JPMorgan Chase Data Breach History
WebsiteJPMorgan Chase & Co. is an American multinational financial services company. Fortune 500.
This page shows all data breaches of JPMorgan Chase. View the complete breach timeline, records exposed, root causes, and AI breach risk score. BreachHistory tracks disclosed data breaches worldwide.
Data Breach Timeline — All JPMorgan Chase Breaches
- 2025 2025 Phishing breach — PII and account details Unknown records Share
- 2014 2014 contact information breach 83.0M records Share
- 2013 2013 — JPMorgan Chase: JPMorgan Chase's website was taken offline by a… Unknown records Share
- 2011 2011 — JPMorgan Chase: A Staten Island resident somehow obtained the… Unknown records Share
- 2010 2010 — JPMorgan Chase: A Chase bank teller sold twelve customer account… 12 records Share
JPMorgan Chase Data Breach Summary
This page tracks the JPMorgan Chase data breach history and cybersecurity incidents affecting JPMorgan Chase (United States). BreachHistory currently indexes 9 publicly disclosed or catalogued incidents spanning 2005 through 2025, with approximately 88.2 million records reported as exposed across all indexed events. These totals may include overlapping datasets or third-party estimates and should not be interpreted as unique affected users.
The JPMorgan Chase breach timeline includes major data breaches, cyber attacks, data leaks, credential exposures, API abuse, and other security incidents. Each incident provides details on the estimated records exposed, attack method, affected data types, and supporting public sources. Currently, 0 incidents are company-confirmed.
Largest JPMorgan Chase Data Breaches
The largest indexed incidents include the 2014 contact information breach, the 2010 — JPMorgan Chase: In 2007, the personal information of approximately 2, 2.6M …, and the 2007 — JPMorgan Chase: The personal information of approximately 2, 2.6M records, along with additional historical incidents involving exposed passwords, public databases, and large-scale data scraping. Record counts originating from threat actors or leak sites should be treated as estimates unless confirmed by JPMorgan Chase or a regulator. Below is the list of large data breaches:
- 2014 2014 contact information breach — about 83.0M records exposed · Catalogued incident
- 2010 2010 — JPMorgan Chase: In 2007, the personal information of approximately 2, 2.6M records — about 2.6M records exposed · Catalogued incident
- 2007 2007 — JPMorgan Chase: The personal information of approximately 2, 2.6M records — about 2.6M records exposed · Catalogued incident
- 2007 2007 — JPMorgan Chase: A computer tape containing personal information of… — about 47.0K records exposed · Catalogued incident
- 2010 2010 — JPMorgan Chase: A Chase bank teller sold twelve customer account… — about 12 records exposed · Catalogued incident
What Information Was Exposed?
Depending on the incident, exposed data may include email addresses, passwords and login credentials, phone numbers, names, physical addresses, bank account details, and other personal information (PII). The exact data varies between incidents, so review each breach page before assuming your information was affected.
JPMorgan Chase Data Breach 2026
At the time of this update, no JPMorgan Chase data breach has been catalogued for 2026. New incidents are added as official disclosures, regulatory filings, or credible cybersecurity reports become available.
What To Do If You Were Affected
If you believe your account may have been involved in a JPMorgan Chase data breach, change any reused passwords, enable multi-factor authentication (MFA), monitor your account for suspicious activity, and be cautious of phishing emails or fake breach notifications.
This JPMorgan Chase breach history is maintained by BreachHistory using public disclosures, regulatory filings, security research, and clearly labelled third-party claims. For the complete breach timeline, records exposed, incident details, and AI Breach Risk Score, explore the sections on this page.