{"id":18627,"date":"2026-09-02T07:59:11","date_gmt":"2026-09-02T14:59:11","guid":{"rendered":"https:\/\/jasonsblog.ddns.net\/?p=18627"},"modified":"2026-09-02T08:44:29","modified_gmt":"2026-09-02T15:44:29","slug":"fbi-investigating-153-million-us-and-canadian-drivers-licenses-leaked-on-russian-cybercrime-forum-including-that-of-us-secdef-pete-hegseth-data-is-suspected-to-have-come-from-an-id","status":"publish","type":"post","link":"https:\/\/jasonsblog.ddns.net\/index.php\/2026\/09\/02\/fbi-investigating-153-million-us-and-canadian-drivers-licenses-leaked-on-russian-cybercrime-forum-including-that-of-us-secdef-pete-hegseth-data-is-suspected-to-have-come-from-an-id\/","title":{"rendered":"FBI Investigating 153 Million US and Canadian Driver\u2019s Licenses Leaked on Russian Cybercrime Forum \u2014 Data is Suspected to Have Come From an ID-Authentication Service Provider"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">And this is why uploading an image of your ID to verify your identity is a bad idea. I&#8217;m reminded of the WEF hyping cyberattacks to increase, and this could be purposeful to persuade the world&#8217;s population to accept a digital ID scheme instead of uploading video and pictures of their driver&#8217;s license to these 3rd party vendors with dubious security. On the positive, you should be able to get free credit monitoring for three years with the ability to lock your credit. I&#8217;m still enjoying mine courtesy of AT&amp;T.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.tomshardware.com\/tech-industry\/cyber-security\/fbi-investigating-153-million-us-and-canadian-drivers-licenses-leaked-on-russian-cybercrime-forum-including-that-of-us-secdef-pete-hegseth-data-is-suspected-to-have-come-from-an-id-authentication-service-provider\">https:\/\/www.tomshardware.com\/tech-industry\/cyber-security\/fbi-investigating-153-million-us-and-canadian-drivers-licenses-leaked-on-russian-cybercrime-forum-including-that-of-us-secdef-pete-hegseth-data-is-suspected-to-have-come-from-an-id-authentication-service-provider<\/a><\/p>\n\n\n<div class=\"wp-block-ub-divider ub_divider ub-divider-orientation-horizontal\" id=\"ub_divider_0d83c813-e0df-445b-bdc1-340ac9d36cf0\"><div class=\"ub_divider_wrapper\" style=\"position: relative; margin-bottom: 2px; width: 100%; height: 2px; \" data-divider-alignment=\"center\"><div class=\"ub_divider_line\" style=\"border-top: 2px solid #ccc; margin-top: 2px; \"><\/div><\/div><\/div>\n\n\n<p class=\"wp-block-paragraph\">By Jowi Morales<\/p>\n\n\n\n<h5 class=\"wp-block-heading\">The FBI says it has started looking into the leak.<\/h5>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/cdn.mos.cms.futurecdn.net\/gsKrVXYoUhmCSoe8kTLovR.jpg\" alt=\"Driving licenses\"\/><figcaption class=\"wp-element-caption\">(Image credit: Getty \/ Justin Sullivan)<\/figcaption><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">More than 153 million US and Canadian driver\u2019s licenses, as well as other identity documents, have reportedly become available for purchase on the dark web for a limited time. According to cybersecurity journalist <a href=\"https:\/\/krebsonsecurity.com\/2026\/09\/fbi-probes-service-selling-153m-drivers-licenses\/\" target=\"_blank\" rel=\"noopener\">Brian Krebs<\/a>, the service was called Nexus, and although it\u2019s no longer available at the time of writing, it claimed to have possessed 153 million driver\u2019s licenses, 10 million ID cards, 1.9 million travel documents, 1.3 million international driver\u2019s licenses, 579k medical cards, 429k common access cards, 91k residence cards, 77k employment authorization records, and 5 million other documents, allegedly sourced from an ID-authentication service based in Louisiana.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The service was advertised on the Russian cybercrime forum Exploit, where whoever was promoting it posted the driver\u2019s license of Krebs as a free sample, which caught the journalist\u2019s attention. He was also able to see a preview of U.S. Secretary of Defense Pete Hegseth\u2019s information on the database \u2014 a concerning breach of <a href=\"https:\/\/www.tomshardware.com\/tag\/security\">security<\/a> for someone with such a sensitive position in the government. After further investigation, they concluded that the service seemed to have possessed legitimate data, especially after searching for the data of several of his friends and family members with their consent. One thing that all the people he found in the database had in common was that they all used Hertz to rent a vehicle.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Krebs also talked with security and privacy researcher Zach Edwards, who said that their information was also found on Nexus. Edwards said that they did not rent a car recently but used their ID at a Planet13 marijuana dispensary. The time stamps found on the scanned images of the driver\u2019s licenses and other identity documents coincide with the time that the victims used their IDs at the said companies, confirming that they were the sources of the leaks. However, Planet13 and Hertz do not do their own authentication; instead, they contract a service provider for the service. Now, it turns out that both Planet13 and Hertz used the company for identity verification and ID-authentication \u2014 IDScan.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Based on the evidence gathered by Krebs, it seems that the leak is centered around the company. He has already contacted the company about the issue, and they said they were investigating the matter. \u201cAt this point I\u2019m not able to share any additional information, but the updates you have provided have been welcome, and helpful to our team\u2019s investigation,\u201d Jillian Kossman, a marketing and operations leader at idscan.net, told the journalist. The FBI has also started looking into the leak, with its New Orleans field office opening an official investigation into the breach.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The massive amount of data that was briefly available on the dark web is certainly concerning. A similar data breach hit Discord after its third-party service provider was hit and resulted in the <a href=\"https:\/\/www.tomshardware.com\/tech-industry\/cyber-security\/discord-says-only-70-000-government-id-photos-exposed-in-third-party-service-breach-denies-2-1-million-figure-says-it-wont-pay-usd3-5-million-ransom-and-has-cut-communications-with-hackers-who-are-threatening-to-go-public\">exposure of 70,000 government IDs<\/a>. Incidents like these have got privacy experts concerned with the push for online age verification requirements, which is why the EFF is <a href=\"https:\/\/www.tomshardware.com\/tech-industry\/eff-asks-california-governor-to-veto-bill-that-would-require-online-age-verification-electronic-frontier-foundation-argues-bill-would-result-in-privacy-invasive-checks-and-step-on-first-amendment\">asking the California governor to veto the law<\/a> requiring this. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Aside from privacy-invasive checks and stepping on First Amendment rights, the leakage of sensitive data like this could increase incidents of stolen identity and more. Driver\u2019s licenses are often widely accepted for opening credit lines and bank accounts, with both photographic, UV, and IR scans available on many of the leaked licenses. Aside from that, it could also potentially compromise the privacy and security of vulnerable people, like those fleeing domestic violence and those who are under the witness protection program.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>And this is why uploading an image of your ID to verify your identity is a bad idea. I&#8217;m reminded of the WEF hyping cyberattacks to increase, and this could be purposeful to persuade the world&#8217;s population to accept a digital ID scheme instead of uploading video and pictures of their driver&#8217;s license to these [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6,7],"tags":[],"class_list":["post-18627","post","type-post","status-publish","format-standard","hentry","category-tech","category-world"],"blocksy_meta":{"styles_descriptor":{"styles":{"desktop":"","tablet":"","mobile":""},"google_fonts":[],"version":7}},"featured_image_src":null,"author_info":{"display_name":"Jason","author_link":"https:\/\/jasonsblog.ddns.net\/index.php\/author\/jturning\/"},"_links":{"self":[{"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/posts\/18627","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/comments?post=18627"}],"version-history":[{"count":2,"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/posts\/18627\/revisions"}],"predecessor-version":[{"id":18629,"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/posts\/18627\/revisions\/18629"}],"wp:attachment":[{"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/media?parent=18627"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/categories?post=18627"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/jasonsblog.ddns.net\/index.php\/wp-json\/wp\/v2\/tags?post=18627"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}