---
schema_version: "secwatch.filing_event.v1"
accession: "0001193125-26-312573"
form_type: "8-K"
ticker: "FIVE"
cik: "0001177609"
company_name: "FIVE BELOW, INC"
filed_at: "2026-07-22T21:19:51+00:00"
generated_at: "2026-07-22T21:22:06.274356+00:00"
event_type: "cyber"
sentiment: "negative"
materiality_score: 0.35
calibrated_materiality_score: 0.35
confidence: "high"
source: SEC EDGAR
---

# Five Below reports social-engineering cyber incident; no PII exfiltrated, no material impact

## Summary
- Incident occurred July 14, 2026; threat actor used social engineering to access an employee's company-issued computer.
- Files were exfiltrated from the affected computer; no personally identifiable information was accessed or exfiltrated.
- Company contained and terminated unauthorized access; incident limited to the single employee's environment.
- Company believes the incident has not had and is not reasonably likely to have a material impact on business or financial condition.

## SEC filing metadata
- accession: 0001193125-26-312573
- form_type: 8-K
- ticker: FIVE
- cik: 0001177609
- company_name: FIVE BELOW, INC
- filed_at: 2026-07-22T21:19:51+00:00
- event_type: cyber
- sentiment: negative
- materiality_score: 0.35
- calibrated_materiality_score: 0.35
- confidence: high
- sec_items: 8.01
- EDGAR index: https://www.sec.gov/Archives/edgar/data/1177609/000119312526312573/0001193125-26-312573-index.htm
- EDGAR primary document: https://www.sec.gov/Archives/edgar/data/1177609/000119312526312573/d19155d8k.htm

## Machine-readable alternates
- HTML: https://secwatch.observer/filing/0001193125-26-312573
- JSON: https://secwatch.observer/filing/0001193125-26-312573.json
- Plain text: https://secwatch.observer/filing/0001193125-26-312573.txt

This AI-assisted summary is a reading aid. Review the linked SEC EDGAR filing before relying on any specific claim.
