www.prnewswire.com Poppins Payroll Data Breach Exposes Personal Information of Household Employers and Employees
Article Content
- •Poppins Payroll detected a data breach on September 3, 2026, due to a vulnerability in Metabase.
- •Personal information of household employers and employees may have been compromised, including Social Security numbers.
- •Class action investigations are underway by multiple law firms for those affected by the breach.
Poppins Payroll, a cloud-based payroll service, reported a data breach affecting household employers and employees. The breach was detected on September 3, 2026, when an unauthorized third party exploited a vulnerability in Metabase, a software vendor used by Poppins. Notification letters were sent to affected individuals on September 29, 2026. The exposed data may include names, Social Security numbers, financial information, and more. Edelson Lechtzin LLP and Wolf Haldenstein LLP are investigating potential class action claims on behalf of those affected. The full scope of the breach and the attacker's identity remain unconfirmed. Poppins has engaged an outside security firm to address the incident.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Following this threat?
Track Poppins Payroll in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
Who is affected by the Poppins Payroll breach?
What personal information was exposed?
What actions are being taken following the breach?
Continue Reading
Citrix NetScaler Critical Vulnerabilities Exploited: Urgent Patching Required Citrix NetScaler ADC and Gateway products are affected by critical vulnerabilities CVE-2026-88771 and CVE-2026-88772, both assigned a CVSS score of 9.5. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on September 27, 2026, and mandated…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…