Skip to main content

Home Depot agrees to pay customers $20M to settle that massive 2014 hack

The Home Depot sign with sky as a backdrop.
Mike Mozart/Flickr / The Home Depot
Home Depot’s security breach 18 months ago was hugely embarrassing for the company, and only now is it coming near to finally bringing the matter to a close.

The retail giant said Tuesday it’s agreed to pay a minimum of $19.5 million in compensation to customers caught up in the incident that saw cybercriminals nab payment card information and email addresses belonging to tens of millions of Home Depot shoppers.

If approved by the courts, the settlement will take care of nearly 60 proposed class-action lawsuits that resulted from the security breach, though Home Depot has always denied any wrongdoing or liability.

The agreement includes the launch of a $13-million fund to reimburse Home Depot customers for any losses – including legal fees – incurred as a result of the hack, and the retailer will also pay for 18 months of cardholder protection services at a cost of at least $6.5 million.

Home Depot spokesperson Stephen Holmes told Reuters, “We wanted to put the litigation behind us, and this was the most expeditious path,” adding, “Customers were never responsible for any fraudulent charges.”

The security breach, which took place between April and September 2014, saw hackers steal payment card information belonging to around 40 million Home Depot shoppers, and also a database of up to 53 million customer email addresses.

Home Depot said at the time that that hackers had accessed its computer network through the use of a third-party vendor’s username and password, explaining: “The hackers then acquired elevated rights that allowed them to navigate portions of Home Depot’s network and to deploy unique, custom-built malware on [our] self-checkout systems in the U.S. and Canada.”

The hack occurred alongside other similar high-profile incidents, and came a few months after Target revealed cybercriminals had stolen personal data belonging to around 100 million of its own customers.

In May 2015, Target agreed to pay $10 million to shoppers affected by the breach, and later in the year settled with Visa in a deal worth $67 million to compensate banks and other firms that issue its cards. The payout took care of costs incurred by card issuers as a result of the hack, covering actions such as sending out new cards and dealing with any resulting fraud.

Editors' Recommendations

Trevor Mogg
Contributing Editor
Not so many moons ago, Trevor moved from one tea-loving island nation that drives on the left (Britain) to another (Japan)…
How to create a Subreddit on desktop and mobile
Laptop Working from Home

Few social media sites are as popular as Reddit. Regardless of what you're interested in, there's probably a thriving community for you to interact with on the platform. Known as subreddits, these communities are home to topics like gaming, world news, science, movies, and more. If you can't find a subreddit with your particular interest, Reddit makes it easy to create your own Reddit community.

Running a successful Reddit community isn't easy – but the process of starting one only takes a few minutes. Keep in mind that you'll want to keep a close eye on your subreddit to prevent it from being shut down or turning into a wasteland with no users, but running a subreddit can be a lot of fun when done properly. If you prefer, you can also create a private community that only your friends can join, giving you a place to hang out beyond Twitter and TikTok.

Read more
How to download music from YouTube on desktop and mobile
A woman sitting on a couch, wearing airpods and holding and looking at a smartphone.

Downloading music from YouTube is a fairly common practice, and the demand for making the process easier has inspired the creation of countless websites and software.

But not every service can be considered safe. In fact, some of these services may infect your computer with malware or produce poor-quality audio files. When downloading music from YouTube, you’ll need to first make sure that the websites or apps you use for doing so won’t hurt your device. For this guide our team has found two methods to make the process safer and easier.

Read more
How to clear your browser cache in Chrome, Edge, or Firefox
The Firefox iPhone app.

A stocked computer cache may be convenient for logging into and out of go-to sites in seconds flat, but a major buildup of these tracking codes could significantly impact your PC’s performance. If you’ve noticed that your PC has been running rather slow of late, or you’re using a new browser and don’t know how to clear its cache, we’ve got you covered with the following guide.

Read more