Hackers Stole 600,000 Credit Card Numbers

Cybercriminals used customized Chinese AI models to bypass security safeguards and target dozens of retailers.

Updated on Sept. 23, 2026 in Cybersecurity

Isometric editorial illustration featuring a complex metallic lattice and a large digital padlock, representing a major cybersecurity data breach.
Cybercriminals leveraged repurposed AI models to breach retail security systems, successfully stealing over 600,000 customer credit card records across the United States. AI Illustration. Upload story photo >

Live Poll

Do you worry that the rapid growth of AI development makes your personal data less secure?

Hackers have successfully compromised more than 600,000 credit card numbers belonging to customers at dozens of retail outlets. The breach was achieved by repurposing open source Chinese artificial intelligence models to evade established security protections.

Why it matters

This incident highlights a growing threat where cybercriminals weaponize AI tools to bypass security protocols at American firms. The ability to modify existing software to circumvent defenses poses a significant risk to retail data integrity nationwide.

The attackers accessed data by modifying open source Chinese artificial intelligence models. These customized tools were specifically designed to bypass the defensive safeguards maintained by American AI firms.

The details

Cybercriminals executed the theft by leveraging specialized AI models originally developed in China to bypass security measures. The operation impacted dozens of individual retailers, leading to the unauthorized acquisition of more than 600,000 credit card records.

Timeline

  1. The credit card theft was reported in September 2026.

The Tech Race

This breach reflects an accelerating arms race in the exploitation of open source artificial intelligence models to circumvent digital security. It highlights the vulnerability of legacy data systems when faced with sophisticated AI-driven evasion tactics.

Consumers should actively monitor their bank statements and credit reports for any signs of unauthorized transactions following this large-scale retail breach. Customers might also need to replace their credit cards if their financial institutions identify their data as part of the compromised set.

The takeaway

Retailers and security firms must continuously update their defensive AI safeguards to counter the rapid evolution of malicious model customization. Individuals are encouraged to enable multi-factor authentication and real-time transaction alerts to protect against potential future unauthorized use.

Further reading

For more information on the evolving threat landscape, visit the Cybersecurity section.

Source note: This article includes information reported by Bloomberg Business.

Live Poll

Do you worry that the rapid growth of AI development makes your personal data less secure?