https://www.theregister.com/2024/06/03/usdod_data_dump/ # # Sign in / up The Register(r) -- Biting the hand that feeds IT # # # Topics Security Security All SecurityCyber-crimePatchesResearchCSO (X) Off-Prem Off-Prem All Off-PremEdge + IoTChannelPaaS + IaaSSaaS (X) On-Prem On-Prem All On-PremSystemsStorageNetworksHPCPersonal TechCxOPublic Sector (X) Software Software All SoftwareAI + MLApplicationsDatabasesDevOpsOSesVirtualization (X) Offbeat Offbeat All OffbeatDebatesColumnistsScienceGeek's GuideBOFHLegalBootnotesSite NewsAbout Us (X) Special Features Special Features All Special Features Cloud Infrastructure Week Cybersecurity Month Blackhat and DEF CON Sysadmin Month The Reg in Space Emerging Clean Energy Tech Week Spotlight on RSA Energy Efficient Datacenters Vendor Voice Vendor Voice Vendor Voice All Vendor Voice Amazon Web Services (AWS) New Horizon in Cloud Computing DDN Google Cloud Data Transformation Google Gemini Hewlett Packard Enterprise: Edge-to-Cloud Platform Intel vPro VMware (X) Resources Resources Whitepapers Webinars & Events Newsletters [cybercrime] Cyber-crime 6 comment bubble on white Crooks threaten to leak 3B personal records 'stolen from background check firm' 6 comment bubble on white Turns out opting out actually works? icon Jessica Lyons Mon 3 Jun 2024 // 19:36 UTC # Billions of records detailing people's personal information may soon be dumped online after being allegedly obtained from a Florida firm that handles background checks and other requests for folks' private info. A criminal gang that goes by the handle USDoD put the database up for sale for $3.5 million on an underworld forum in April, and rather incredibly claimed the trove included 2.9 billion records on all US, Canadian, and British citizens. It's believed one or more miscreants using the handle SXUL was responsible for the alleged exfiltration, who passed it onto USDoD, which is acting as a broker. The pilfered information is said to include individuals' full names, addresses, and address history going back at least three decades, social security numbers, and people's parents, siblings, and relatives, some of whom have been dead for nearly 20 years. According to USDoD, this info was not scraped from public sources, though there may be duplicate entries for people in the database. [cybercrime] Fast forward to this month, and the infosec watchers at VX-Underground say they've not only been able to view the database and verify that at least some of its contents are real and accurate, but that USDoD plans to leak the trove. Judging by VX-Underground's assessment, the 277.1GB file contains nearly three billion records on people who've at least lived in the United States - so US citizens as well as, say, Canadians and Brits. [cybercrime] This info was allegedly stolen or otherwise obtained from National Public Data, a small information broker based in Coral Springs that offers API lookups to other companies for things like background checks. The biz did not respond to The Register's inquiries. * TransUnion reckons big dump of stolen customer data came from someone else * Airbus suffers data leak turbulence to cybercrooks' delight * Snowflake denies miscreants melted its security to steal data from top customers * Cyber cops plead for info on elusive Emotet mastermind There is a small silver lining, according to the VX team: "The database DOES NOT contain information from individuals who use data opt-out services. Every person who used some sort of data opt-out service was not present." So, we guess this is a good lesson in opting out. USDoD is the same crew that previously peddled a 3GB-plus database from TransUnion containing financial information on 58,505 people. And last September, the same criminals touted personal information belonging to 3,200 Airbus vendors after the aerospace giant fell victim to an intrusion. (r) Get our Tech Resources # Share More about * Cybercrime * Security More like these x More about * Cybercrime * Security Narrower topics * 2FA * Advanced persistent threat * Application Delivery Controller * Authentication * BEC * Black Hat * BSides * Bug Bounty * Common Vulnerability Scoring System * Cybersecurity * Cybersecurity and Infrastructure Security Agency * Cybersecurity Information Sharing Act * Data Breach * Data Protection * Data Theft * DDoS * DEF CON * Digital certificate * Encryption * Exploit * Firewall * Hacker * Hacking * Hacktivism * Identity Theft * Incident response * Infosec * Kenna Security * NCSAM * NCSC * Palo Alto Networks * Password * Phishing * Quantum key distribution * Ransomware * Remote Access Trojan * REvil * RSA Conference * Spamming * Spyware * Surveillance * TLS * Trojan * Trusted Platform Module * Vulnerability * Wannacry * Zero trust More about # Share 6 comment bubble on white COMMENTS More about * Cybercrime * Security More like these x More about * Cybercrime * Security Narrower topics * 2FA * Advanced persistent threat * Application Delivery Controller * Authentication * BEC * Black Hat * BSides * Bug Bounty * Common Vulnerability Scoring System * Cybersecurity * Cybersecurity and Infrastructure Security Agency * Cybersecurity Information Sharing Act * Data Breach * Data Protection * Data Theft * DDoS * DEF CON * Digital certificate * Encryption * Exploit * Firewall * Hacker * Hacking * Hacktivism * Identity Theft * Incident response * Infosec * Kenna Security * NCSAM * NCSC * Palo Alto Networks * Password * Phishing * Quantum key distribution * Ransomware * Remote Access Trojan * REvil * RSA Conference * Spamming * Spyware * Surveillance * TLS * Trojan * Trusted Platform Module * Vulnerability * Wannacry * Zero trust TIP US OFF Send us news --------------------------------------------------------------------- Other stories you might like 2.8M US folks learn their personal info was swiped months ago in Sav-Rx IT heist Theft happened in October, only now are details coming to light Cyber-crime28 May 2024 | 8 Bayer and 12 other major drug companies caught up in Cencora data loss Infosec in brief Plus: US water systems fail at cyber security Security27 May 2024 | 5 Miscreants claim they've snatched 560M people's info from Ticketmaster Updated All that data allegedly going for a song on revived BreachForums Cyber-crime29 May 2024 | 26 Building cheaper, greener 5G networks How ZTE's radio network efficiencies can shrink operators' energy costs and boost profits Sponsored Feature [cybercrime] FlyingYeti phishing crew grounded after abominable Ukraine attacks Kremlin-aligned gang used Cloudflare and GitHub resources, and they didn't like that one bit Cyber-crime31 May 2024 | 1 Here's yet more ransomware using BitLocker against Microsoft's own users Updated ShrinkLocker throws steel and vaccine makers into the hurt locker Cyber-crime23 May 2024 | 4 Mystery miscreant remotely bricked 600,000 SOHO routers with malicious firmware update Source and motive of 'Pumpkin Eclipse' assault unknown Security31 May 2024 | 29 Multi-day DDoS storm batters Internet Archive Updated Think this is bad? See what Big Media wants to do to us, warns founder Cyber-crime29 May 2024 | 51 BreachForums returns just weeks after FBI-led takedown Website whack-a-mole getting worse Cyber-crime28 May 2024 | 6 Casino cyberattacks put a bullseye on Scattered Spider - and the FBI is closing in Interview Mandiant CTO chats to The Reg about the looming fate of this ransomware crew Cyber-crime23 May 2024 | 11 Go after UnitedHealth, not us, 100+ medical groups urge Uncle Sam Why should we get its paperwork? CSO22 May 2024 | 8 Canada's London Drugs confirms ransomware attack after LockBit demands $25M Pharmacy says it's 'unwilling and unable to pay ransom' Cyber-crime22 May 2024 | 3 The Register icon Biting the hand that feeds IT About Us* * Contact us * Advertise with us * Who we are Our Websites* * The Next Platform * DevClass * Blocks and Files Your Privacy* * Cookies Policy * Privacy Policy * Ts & Cs * Do not sell my personal information Situation Publishing Copyright. All rights reserved (c) 1998-2024 no-js