iBUYPOWER Data Breach Notification: What Employees Need to Know

iBUYPOWER, the gaming PC brand operated by American Future Technology Corporation, discovered unauthorized activity inside its IT network on June 21, 2025. The company says it moved quickly to stop the activity, bring in cybersecurity specialists, and investigate what had happened. During that investigation, iBUYPOWER determined this was a hacking or system intrusion in which an unauthorized third party accessed certain individuals’ personal information, and that around July 25, 2025, data stored on the company’s network — including personal information — may have been exposed.

This letter was addressed to someone whose employee data was held by iBUYPOWER, meaning the incident involved personnel records rather than customer accounts. The letter itself does not state how many total employees or individuals were affected, so the scope of the incident is not fully clear from this notice alone.

What information was exposed?
  • Mailing address
  • Telephone number
  • Social Security number
  • Date of birth
  • Driver’s license number
  • Passport number
  • U.S. Alien Registration Number
  • EAD card number
  • Identification card number
  • Birth certificate
  • Tax ID number
  • Bank account number
  • Medical information
  • Health insurance information

Because so many sensitive identifiers were involved — including Social Security numbers, government ID numbers, and financial and medical data — this is a high-severity incident that deserves prompt attention. iBUYPOWER is offering complimentary access to Experian IdentityWorks, including credit monitoring and Identity Restoration support, though the letter leaves the exact enrollment period as a placeholder rather than a specific number of months. To activate it, enroll by September 30, 2026 at https://www.experianidworks.com/1Bcredit using activation code ABCDEFGHI. Identity Restoration help is available for the same period even if you don’t enroll online, and a credit card is not required to sign up.

What should you do now?
  • Enroll in the free Experian IdentityWorks membership before the September 30, 2026 deadline using the activation code in your letter, and consider signing up for a service like Aura or LifeLock, which can alert you if your information appears elsewhere.
  • Because your Social Security number, driver’s license, and passport information may have been exposed, place a fraud alert or a full security freeze with Equifax, Experian, and TransUnion — freezes are free and prevent new credit from being opened in your name without your consent.
  • Watch closely for notices from the IRS, Social Security Administration, or immigration authorities, since tax ID, Alien Registration, and EAD card numbers were also involved.
  • Review any bank statements tied to the exposed bank account number and contact your bank if you notice unfamiliar charges or account changes.
  • Ask your health insurer to flag your account for unusual activity, given that medical and health insurance information was included in the exposure.
  • Order your free annual credit reports at www.annualcreditreport.com and check them for accounts you don’t recognize.
  • Keep a copy of this notice and your engagement number, and use the Experian Identity Restoration service if you find signs of fraud tied to this incident.

If you have questions, you can reach Experian’s customer care team at 833-931-5050 (have your engagement number ready), and iBUYPOWER’s letter references a separate dedicated assistance line whose number was not included in the copy of the notice reviewed for this article.

Leave a Comment