T-Mobile confirms millions of customers caught up in data breach

Image of padlock against circuit board/cybersecurity background
(Image credit: Future)

T-Mobile has confirmed that an unauthorized user has indeed managed to scoot away with the personally identifiable information (PII) of several millions customers.

The incident first came to light when the apparent T-Mobile hacker offered to offload the ill-gotten data, which they claimed to have stolen from T-Mobile servers. T-Mobile earlier told TechRadar Pro that it was investigating the hacker’s claims, then later delivered a statement that confirmed the leak without quantifying the damage.

However, in its latest statement, the telecoms company says it has been able to establish that the hacker did manage to lift the PII of millions of its customers.

TechRadar needs you!

We're looking at how our readers use VPNs with streaming sites like Netflix so we can improve our content and offer better advice. This survey won't take more than 60 seconds of your time, and we'd hugely appreciate if you'd share your experiences with us.

>> Click here to start the survey in a new window <<

“Our preliminary analysis is that approximately 7.8 million current T-Mobile postpaid customer accounts’ information appears to be contained in the stolen files, as well as just over 40 million records of former or prospective customers who had previously applied for credit with T-Mobile,” the company wrote.

All too common

Confirming the hacker’s claims, T-Mobile said that, besides the full name of their customers, the leaked data also included other sensitive information, including their date of birth, social security numbers (SSN) and driver’s license details. 

“We have also been able to confirm approximately 850,000 active T-Mobile prepaid customer names, phone numbers and account PINs were also exposed,” added T-Mobile, stating that it has proactively reset all of the PINs on the leaked accounts.

The company claims that, while the investigation is still underway, it has no reason to believe the stolen records included any financial details of the customers.

In response to the leaks, T-Mobile has announced a number of remedial steps to prevent the misuse of the information, including offering two-year complimentary access to McAfee’s identity protection services.

However, Ric Longenecker, CISO at cybersecurity vendor Open Systems told TechRadar Pro that the incident is further proof that companies must immediately take preventive steps to fend off such breaches from occurring in the first place.

“Another day, another cyberattack on a major company results in the personal information of millions of people being stolen. This has become an all too common occurrence for companies worldwide – and the fifth known data breach for T-Mobile over the past three years,” said Longenecker.

Mayank Sharma

With almost two decades of writing and reporting on Linux, Mayank Sharma would like everyone to think he’s TechRadar Pro’s expert on the topic. Of course, he’s just as interested in other computing topics, particularly cybersecurity, cloud, containers, and coding.

Read more
Data Breach
US state sues T-Mobile over 2021 data breach which leaked data of millions
Security padlock and circuit board to protect data
Mexican fintech company Miio exposed millions of files of sensitive customer data
How to prevent cyberattacks
NTT admits hackers accessed details of almost 18,000 corporate customers in cyberattack
Someone holding a passport with two boarding passes inside it
Top digital loan firm security slip-up puts data of 36 million users at risk
Cartoon Phishing
One of the largest data leaks ever sees info on 1.5 billion people leaked online
A digital themed isometric showing a neon padlock in the foreground, and a technological diagram of a processor logic board in the background.
Major breach hits employee screening firm - 3.3 million affected as hackers steal DISA data
Latest in Security
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
Computer Hacked, System Error, Virus, Cyber attack, Malware Concept. Danger Symbol
Veeam urges users to patch security issues which could allow backup hacks
UK Prime Minister Sir Kier Starmer
The UK releases timeline for migration to post-quantum cryptography
Image depicting a hand on a scanner
Hackers are targeting unpatched ServiceNow instances that exploit 3 separate year-old vulnerabilities
ransomware avast
Ransomware attacks are costing Government offices a month of downtime on average
Lock on Laptop Screen
Data breach at Pennsylvania education union potentially exposes 500,000 victims
Latest in News
Seth Milchick and Kier Eagan&#039;s animatronic speaking in Severance season 2 episode 10
Apple TV+ announces Severance has been renewed for season 3 after that devastating finale
Apple&#039;s Craig Federighi presenting customization options in iOS 18 at the Worldwide Developers Conference (WWDC) 2024.
iOS 19: new features, a new design, and everything you need to know
Spotify&#039;s new Concerts Near You playlist feature showing a list of songs by local touring artists
Spotify has launched a new Concerts Near You playlist, making it easier for you to see if your favorite artists are performing in your area
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
The new Dr. Squatch Call of Duty collection.
Latest Call of Duty collaboration finally lets you rub your body with Soap - and I can't believe I just wrote that
Samsung S95D with peacock feather on screen
Samsung says an OLED-beating new screen tech could come sooner than we thought – but I wouldn't expect it in 4K TVs right away