The Circuitry
THE CIRCUITRYYour one-stop source for all tech news
HOMETODAYNEWSFEEDEVENTS
BOOKMARKS
RSS
© 2026 The Circuitry
About UsSourcesContactCorrectionsPrivacy
  • Today
  • Feed
  • Events
  • Saved
Scroll for more
Verification
VERIFIEDConfidence: HIGH
Source identified
Claims cross-referenced
No discrepancies found
Fact-check summary

FTC's $2.25M Amazon penalty for FCRA violations is corroborated by the agency's official June 30 press release plus MarketWatch, Yahoo Finance, and Bloomberg coverage.

Sourcing
1source

via The Verge

The Verge · track record
89Stories
100%Verified
430d
All sources →
Markets
AMZN···

Live quote · not investment advice

Home/Tech/FTC fines Amazon $2.25 million over alleged failures to aid identity theft victims
VERIFIEDBy Xavier Rivera· ·1 min read

FTC fines Amazon $2.25 million over alleged failures to aid identity theft victims

The FTC has fined Amazon $2.25 million after the agency determined the company refused to supply identity theft victims with records of fraudulent purchases, violating the Fair Credit Reporting Act. The settlement obliges Amazon to strengthen its handling of such customer requests.

Source:The Verge
Post
FTC fines Amazon $2.25 million over alleged failures to aid identity theft victims
TL;DRAI · 60 sec read

The Federal Trade Commission orders Amazon to pay a 2.25 million dollar penalty over claims it did not assist identity theft victims. Officials say the retailer violated the Fair Credit Reporting Act by refusing to share details on fraudulent accounts and missing the 30-day response deadline. Victims could not get records to restore their credit.

The Federal Trade Commission has ordered Amazon to pay a $2.25 million penalty to resolve allegations that it did not assist customers targeted by identity theft.
The complaint describes how victims who reached out for help reportedly entered a Kafkaesque sequence in which agents demanded the name of the account creator before releasing any records.
The FTC accuses Amazon of violating the Fair Credit Reporting Act. Agency officials claim the retailer declined to share details on transactions tied to accounts opened through fraud. The complaint describes how victims who reached out for help reportedly entered a Kafkaesque sequence in which agents demanded the name of the account creator before releasing any records.
POST FROM @FTC· official FTC announcement tweet matching the article's story on the $2.25 million Amazon fine
https://x.com/FTC/status/2071962046250271075
In one case a victim guessed that name more than 30 times without success. Amazon allegedly kept the victim’s credit card linked to the thief’s account. The FTC also says the company missed the 30-day deadline the FCRA sets for turning over such information.
From The CircuitryThe Feed — live briefs across tech, all day.See what’s happening →
Amazon says it has resolved the matter with the FTC. A company spokesperson told Bloomberg the retailer has “resolved this matter with the FTC” and “implemented process improvements for customers who believe they may be victims of identity theft.” Bloomberg first disclosed the settlement on the same day the FTC made its announcement.
Amazon allegedly kept the victim’s credit card linked to the thief’s account.
The penalty addresses systemic support failures reported by victims. The FTC filing shows how Amazon’s approach left those affected without the basic documents needed to challenge fraudulent charges and restore their credit histories.
Why this mattersAI · ~100 words

Tap a lens to see what this story means for you.

Reader-supported
DonateBuy me a coffee →Follow@thecircuitry_ →Follow@thecircuitry.to →

Reader-supported · The Brief

Liked this? The Brief brings you the whole day in tech, verified, every morning. Two minutes, free forever.

HELP US IMPROVE
From The Circuitry

See what’s happening right now

The Feed runs all day — short, verified briefs the moment they break.

Open the Feed →
From The Circuitry

Follow @thecircuitry_

Every story we publish, as it happens. No noise between.

Follow on X ↗On Bluesky ↗

Reader-supported

The Circuitry is a passion project I've always wanted to build, and I love the work behind it.

Running it costs real money. APIs, hosting, time. To keep improving the site and growing this into something useful for everyone, those costs have to be covered.

Any contribution is appreciated. If not, no pressure. Thanks for reading.

Buy me a coffee
AmazonFTCIdentity Theft
More fromThe Verge
  • EU slaps Alphabet with €890 million fine over Google Search favoritism and Play Store restrictions

    Tech · 21d
  • AMD to invest up to $5B in Anthropic

    Tech · 22d
  • Judge pauses Paramount-Warner Bros Discovery merger

    Tech · 24d
More inTech
  • Google Debuts Gemini 3.7 Flash Alongside Sharp Token Price Cuts

    Tech · 10h
  • Apple Declares iPhone X Obsolete

    Tech · 10h
  • IBM Db2 Releases Face Privilege Escalation Risk

    Tech · 1d
SupportThe Work

The Circuitry is reader-supported. If you find the daily brief useful, you can buy me a coffee to keep it going.

Buy a coffee →
SubscribeCircuitry Brief

Liked this? The Brief brings you the whole day in tech, verified, every morning. Free forever.

MORE IN TECH

Google Debuts Gemini 3.7 Flash Alongside Sharp Token Price Cuts

Google released Gemini 3.7 Flash with enhanced capabilities in coding, web development, document analysis and automated agent execution while cutting token prices by 50% through the end of the year. The model is now live in 160 countries and powers the Gemini Spark agent exclusively for AI Pro and Ultra subscribers.

Apple Declares iPhone X Obsolete

Apple has placed the iPhone X and the 2018 15-inch MacBook Pro on its obsolete products list, ending eligibility for hardware repairs at Apple and authorized providers. The move follows the company's seven-year policy after it stopped distributing the devices, with iOS 16 having been the last major iOS version for the iPhone X.

IBM Db2 Releases Face Privilege Escalation Risk

IBM Db2 versions 11.5.0–11.5.9 and 12.1.0–12.1.5 allow privilege escalation through a specially crafted query. CVE-2026-10543 carries a CVSS 3.1 score of 8.2 high, stems from improper authorization (CWE-285), and was published August 12, 2026. An IBM advisory is available.