All Breaches
May 12, 2026 Verified Sensitive Record Transportation

Frontier Airlines 2026 Data Breach

The Frontier Airlines 2026 data breach was a confirmed security event affecting personal information belonging to certain team members of the U.S. low-cost carrier. The Texas Attorney General publishes an incident window of May 12 through June 3, 2026 and a discovery date of June 18, 2026.

Current Texas Attorney General record BR-0005172 reports that 11,482 people across the United States were affected, including 679 Texas residents. Frontier's official letter in the Massachusetts archive separately confirms the involved data fields and 24 months of Experian IdentityWorks offered by the airline.

How Was the Frontier Airlines Breach Confirmed?

The primary count source is Texas Attorney General data security breach record BR-0005172. It identifies Frontier Airlines at its Denver address and publishes separate fields for the incident start and end, discovery date, nationwide total, Texas subset, principal data categories, and notification by U.S. mail.

Frontier Airlines letter 2026-1139 in Massachusetts' official archive is dated July 9, 2026 and details the data fields involved. It is signed by Frontier's senior vice president of human resources and says protection was offered to potentially affected team members. ClaimDepot connects the regulatory filings to the same event.

What Happened From May 12 Through June 3, 2026?

The Texas regulatory record gives a breach period beginning May 12 and ending June 3. Frontier identified the event on June 18. The official consumer letter says the company immediately secured the affected account and strengthened access controls to help prevent a recurrence.

Public sources do not disclose the initial access method, type of account, whether the unauthorized person downloaded files, an exploited vulnerability, malware, a ransom demand, or actor identity. This record therefore does not infer a technical mechanism and relies only on official dates, data fields, and response steps.

What Identity Information Was Affected?

According to Frontier's official letter, possible fields varied by person and included first and last names, addresses, phone numbers, Social security numbers, driver's license numbers, places of birth, dates of birth, and designated contact information. The Texas record separately confirms the principal identity categories.

Passport or visa numbers and Frontier employee identification numbers were also listed as possible fields in the official letter. The company did not say that every team member had every category involved. Bank accounts, payment cards, medical data, health-insurance information, passwords, and travel itineraries have not been added as confirmed fields for this event.

How Many People Were Affected?

Texas Attorney General record BR-0005172 publishes an exact nationwide total of 11,482 people and a Texas subset of 679. The Texas figure is included in the nationwide population and has not been added on top of it. The portal record was published publicly on July 14, 2026.

ClaimDepot's initial July 10 summary said a nationwide total had not yet been disclosed. The later Texas record supplies an exact total for the same company, data categories, and regulatory-notice period. The current official figure of 11,482 therefore replaces the earlier “not disclosed” status. Separate state publication dates do not indicate separate incidents.

How Did Frontier Respond?

Frontier said it secured the affected account, strengthened access controls, improved system monitoring, and implemented additional measures to enhance its ability to detect and respond to potential threats. The organization sent notification letters by mail and established a dedicated assistance line for incident questions.

Potentially affected team members were offered 24 months of complimentary Experian IdentityWorks. The package includes an Experian credit report, credit monitoring, identity-restoration support, ExtendCare assistance after membership ends, and up to $1 million in identity-theft insurance subject to its terms. The enrollment deadline in the letter is October 31, 2026.

What Should Affected People Do?

Notice recipients should enroll with Experian only through the code in their authentic Frontier letter and review credit reports, tax accounts, and activity associated with identity documents for unfamiliar transactions or applications. When a Social Security number was involved, a credit freeze, fraud alert, and IRS Identity Protection PIN may be appropriate.

Passport details, Social security numbers, passwords, payments, and verification codes should not be shared through unexpected messages claiming to represent Frontier, Experian, a government agency, or a travel service. Use a known official channel instead of links in the message. The official incident assistance line is 833-931-4244, and an individual's letter is the primary source for person-specific fields.

11.5 Thousand
Affected Accounts
12
Data Types
Medium
Severity
Yes
Verification

Exposed Data Types

12
Personal information
Names
Physical addresses
Phone numbers
Social security numbers
Driver’s license numbers
Places of birth
Designated contact information
Passport numbers
Visa numbers
Dates of birth
Employee identification numbers

Additional Information

Added DateJuly 27, 2026
Breach DateMay 12, 2026
Domainflyfrontier.com
SourceTexas Attorney General and official Frontier notice confirming dates, affected team-member identity fields, nationwide count, and response
Last Content UpdateJuly 27, 2026

Verification and editorial method

LeakData compares the incident name, date, affected-record count, and exposed data types with accessible sources. Unverified fields are not presented as facts, and records are updated when new evidence becomes available.

Report missing or incorrect information