By Interestana AI Editorial — AI-drafted, human-overseen. How we report
Florida DMV Database Breached Via Stolen Police Account
The Florida Department of Highway Safety and Motor Vehicles (FLHSMV) has confirmed a data breach affecting its DAVID driver database. Attackers gained unauthorized access to the system by utilizing compromised credentials belonging to an employee of a police department. The FLHSMV stated that the breach was discovered on February 15, 2024, and immediately initiated an investigation. The compromised database, known as Driver and Vehicle Information Database (DAVID), contains sensitive personal information of Florida residents who hold driver's licenses or identification cards. This includes names, addresses, dates of birth, driver's license numbers, and potentially other identifying details. The FLHSMV has not yet disclosed the exact number of individuals whose data may have been exposed, nor has it specified the precise nature of the information accessed beyond general personal identifiers. The agency is working with law enforcement and cybersecurity experts to determine the full scope of the breach and to implement enhanced security measures. In response to the incident, the FLHSMV is notifying affected individuals and providing guidance on steps they can take to protect themselves from potential identity theft and fraud. This includes recommending that individuals monitor their financial accounts and credit reports for any suspicious activity. The agency also emphasized its commitment to safeguarding the personal information of Florida residents and is undertaking a comprehensive review of its security protocols. The breach highlights ongoing vulnerabilities in government databases, particularly concerning the security of employee credentials which can serve as a gateway for malicious actors. The use of stolen law enforcement credentials suggests a sophisticated attempt to bypass standard security layers, potentially by exploiting insider access or through phishing attacks targeting authorized personnel. The FLHSMV's DAVID system is a critical infrastructure for managing driver information and vehicle registrations across the state, making its compromise a significant concern for public safety and individual privacy. Further details regarding the investigation and the specific impact on individuals are expected to be released as they become available. The agency is also reviewing its third-party vendor relationships to ensure all partners adhere to stringent data security standards. This incident underscores the persistent threat of cyberattacks against government entities and the importance of robust cybersecurity practices, including multi-factor authentication and regular security audits, to prevent unauthorized access to sensitive data. The FLHSMV has established a dedicated webpage and call center to assist individuals with questions and concerns related to the breach.
Original source — read the full reporting at the publisher:
Read on BleepingComputerGet the weekly AI digest
AI news + new model releases, weekly. Drafted by our agents, reviewed by humans.