Major hack exposes 86 million AT&T customer records
Share this @internewscast.com

A significant personal data breach affecting over 86 million AT&T customers has surfaced on the dark web, revealing fully decrypted Social Security numbers.

The stolen data was posted to a Russian cybercrime forum on June 3. 

The files contain full names, birthdates, phone numbers, email addresses, home addresses, and 44 million Social Security Numbers in plain text. 

The breach seems to be associated with a major cyberattack that targeted weaknesses in Snowflake, a US-based cloud storage service utilized by big corporations for sensitive data management.

It is reported that hackers gained entry to AT&T’s data by compromising accounts that did not have multi-factor authentication, a fundamental security measure that demands more than just a password for access.

To check if your data was exposed in the breach, visit the cybersecurity firm’s website at npd.pentester.com. Enter your information to see if any of your accounts were affected.

Security researchers are urging customers to monitor their credit reports and take immediate steps to protect themselves. Law enforcement is actively investigating. 

The files are being widely shared across cybercrime forums, repackaged into three cleanly formatted CSV files that make them easier to access and exploit.

The files contain full names, birthdates, phone numbers, email addresses, home addresses, and alarmingly, 44 million Social Security Numbers (SSN) in plain text

The files contain full names, birthdates, phone numbers, email addresses, home addresses, and alarmingly, 44 million Social Security Numbers (SSN) in plain text

AT&T said the hack impacted 86 million former and current customers. It said the Russian hacking group ShinyHunters was behind the breach. 

Around 73m customers included in the hack had their data originally stolen in 2019 and were notified at the time.

However, the group appears to have accessed more records since then. 

‘After analysis by our internal teams as well as external data consultants, we are confident this is repackaged data previously released on the dark web,’ said AT&T in a statement. 

‘Affected customers were notified at that time. We have notified law enforcement of this latest development,’ the spokesperson added.

Cybersecurity researchers at Hackread, who first analyzed the files, found matching customer names, email addresses, physical addresses, and phone numbers across both the previous leak and the latest dataset. 

The leak has been linked to the hacking group ShinyHunters, which claims to have stolen the data.

The leak has been linked to the hacking group ShinyHunters, which claims to have stolen the data.

Security researchers are urging customers to monitor their credit reports and take immediate steps to protect themselves. Law enforcement is actively investigating

Security researchers are urging customers to monitor their credit reports and take immediate steps to protect themselves. Law enforcement is actively investigating

ShinyHunters, the group linked to both AT&T breaches, is also behind the recent Ticketmaster breach that compromised data on 560 million people. 

Their growing list of high-profile leaks has prompted US lawmakers to demand answers.

Senators Richard Blumenthal (Connecticut) and Josh Hawley (Missouri) have called on both AT&T and Snowflake to explain repeated failures to protect customer data.

Experts say the exposure of decrypted SSNs and birthdates is especially damaging, as it enables criminals to open credit lines, impersonate victims, or apply for government services using stolen identities.

‘The original breach of sensitive records from AT&T was enough to worry their customers, now it poses a significant risk to their identities,’ said Thomas Richards, Infrastructure Security Practice Director at Black Duck.

AT&T paid a $370,000 ransom last year, in an attempt to have stolen customer data deleted. The payment, made in Bitcoin, was routed through an intermediary known as ‘Reddington.’

AT&T reportedly received a video showing the files being deleted, but experts say there’s no way to confirm the data wasn’t copied or shared before that.

Share this @internewscast.com
You May Also Like

Andrew Garfield Speaks Out: Is the Magic of Harry Potter Tarnished by JK Rowling’s Controversy?

Andrew Garfield has notably refrained from mentioning JK Rowling by name, suggesting…

Golf’s Future Beyond Tiger Woods: Embracing Change in a Post-Scandal Era

Golf has long relied on the iconic presence of Tiger Woods, a…

SNP Predator’s Victims Call for Investigation into ‘Hunger Games’-Style Youth Organization

Three individuals affected by the actions of former SNP member Jordan Linden…

Market Shift: 20% of Sellers Opt to Reduce Home Prices

Waves of concern are sweeping through the housing market as sellers are…

Shocking Images Reveal Aftermath of Iranian Strike on US Air Force Planes

Striking photographs have surfaced, revealing extensive damage to a U.S. Air Force…

$533 Million Jackpot Winner Sells $11 Million Property

Amid reports of instability within his real estate enterprise, the winner of…

Kim Novak Critiques Sydney Sweeney Casting: Why She’s ‘Totally Wrong’ for the Biopic Role

Kim Novak recently criticized the casting of Sydney Sweeney in the forthcoming…

Seventy Britons Risk Decade-Long Jail Term in UAE for Alleged Drone Photography Over Iran

A startling number of British nationals—approximately 70—have been arrested in the United…

Hepburn’s Grace Shaped by Teenage Resistance Heroism, Reveals Son

Despite being celebrated as one of Hollywood’s most iconic beauties, Audrey Hepburn…

Partner of Deceased Man Calls for Enhanced Safety Measures on Grindr Following Alleged Blackmail Incident

A man is urging Grindr to reconsider its stance on user anonymity…

Billion-Dollar Verdict: Oil Heir Held Liable After Incident Leaves Child Paralyzed

An heir to an oil fortune has been ordered to pay over…

Individual Fined £1,000 for Disposing of Envelope in Public Bin

A man from Lithuania has alleged that he was fined £1,000 by…