NationalPublicData.com Hack Exposes a Nation’s Data

In Data Breach News, Consumer Alerts
August 16, 2024

Questions continue to abound following a data leak that reportedly contained 2.9 billion records with Americans’ personal information. Investigative journalist Brian Krebs summarizes what is known about the data in the breach, its authenticity, and the company behind the data.

HaveIBeenOwned.com’s Troy Hunt analyzed the leaked data and found it is a somewhat disparate collection of consumer and business records, including the real names, addresses, phone numbers and SSNs of millions of Americans (both living and deceased), and 70 million rows from a database of U.S. criminal records.

Hunt said he found 137 million unique email addresses in the leaked data, but stressed that there were no email addresses in the files containing SSN records.

“If you find yourself in this data breach via HaveIBeenPwned.com, there’s no evidence your SSN was leaked, and if you’re in the same boat as me, the data next to your record may not even be correct.”

Nationalpublicdata.com publicly acknowledged a breach in a statement on Aug. 12, saying “there appears to have been a data security incident that may have involved some of your personal information. The incident appears to have involved a third-party bad actor that was trying to hack into data in late December 2023, with potential leaks of certain data in April 2024 and summer 2024.”

Read more at KrebsOnSecurity.com.

Several class action lawsuits have already been filed. More will likely be filed. They will probably all be consolidated at some point.