Trump Mobile acknowledged exposing customers' personal data, including phone numbers and home addresses, through a third-party platform vulnerability. The company is currently evaluating notification requirements.
Trump Mobile confirmed a data exposure affecting its customer base after users discovered their personal information was publicly accessible online.
The breach included sensitive details such as phone numbers and home addresses. The company attributed the incident to a vulnerability in a third-party platform used in its operations.
In a statement, Trump Mobile said it is assessing whether customer notification is required under applicable regulations. The company has not yet disclosed the number of affected customers or the timeline of the exposure.
The discovery came after individuals began reporting that their information could be accessed without authorization. Trump Mobile acknowledged the exposure following these public findings rather than proactively disclosing the incident.
The company has not provided details about when the vulnerability was discovered, how long it remained active, or what steps it has taken to secure customer data going forward. It also did not specify which third-party platform was responsible or whether other customers of that service may be affected.
Data breaches involving personal information pose significant risks to consumers, including potential identity theft, fraud, and harassment. Regulatory bodies in multiple jurisdictions have established notification requirements when breaches expose sensitive customer data.
Trump Mobile operates as a mobile virtual network operator (MVNO) in the U.S. telecommunications market. The company's handling of this incident will likely face scrutiny regarding its security practices and transparency standards.
Further details about remediation efforts, customer notification timelines, and the scope of the exposure are expected as the company completes its evaluation.
The ShinyHunters extortion group has published sensitive data from nearly 13 million Carhartt customer accounts stolen earlier this month, according to data breach notification service Have I Been Pwned.
A Russian-speaking ransomware gang called Aur0ra exploited SpaceX's Cursor AI coding assistant to breach at least seven companies between mid-April and late May, according to security firm Gambit Security.
Americans are systematically targeting and disabling Flock Safety cameras across the country in a decentralized protest movement. The surveillance devices face everything from vandalism to theft as public opposition intensifies.
The US Justice Department has dismantled online infrastructure used by Chinese state-sponsored hackers targeting NASA, the Federal Reserve, and the Senate. The action represents a coordinated effort to disrupt cyber operations against American government agencies and critical infrastructure.