Skip to main content

Hacker thieves steal a million Social Security Numbers

data brokers hacked identity thieves social security number hack
Image used with permission by copyright holder

Now might be a good time to check your credit history for anything fishy. A new investigative report from security researcher Brian Krebs shows that a group of identity thieves have successfully infiltrated the networks of three major data brokers, giving them access to Social Security Numbers, dates of birth, and other personal details that could put all our financials at risk.

Through the use of a botnet – a system of infected computers used to do any number of bad things on the Internet – the ID thieves gained access to the networks of LexisNexis, one of the largest data brokers in the world; Dun & Bradstreet, a data broker that specializes in business data for determining credit worthiness; and Kroll Background America, a background, drug, and health screening company.

LexisNexis and Dan & Bradstreet have both confirmed the attacks on their databases with Krebs. Kroll Background America’s parent company, Allegrity, neither confirmed nor denied an attack, and reiterated its commitment to “protecting the data and privacy of our customers.” The FBI confirmed with Krebs that it is investigating the attack.

The people (or person) behind a website called ssndob.ms, or just SSNDOB, is the source of the attack, according to Krebs. He discovered SSNDOB marketing itself on “underground cybercrime forums” as a source for people who want to purchase “SSNs, birthdays, and other personal data on any U.S. resident.” Customers could pay as little as $0.50 for some records, while full background checks ran between $5 and $15.

Krebs found that SSNDOB provided a hacktivist group called UGNazi with a slew of personal data on a number of celebrities and public figures, including Jay-Z, Beyonce, First Lady Michelle Obama, and former FBI Director Robert Muller. The names, SSNs, birthdays, and addresses of these high-profile people were then posted on a website called exposed.su.

SSNDOB itself was compromised by multiple attacks earlier this year, giving Krebs researchers access to its entire database. The website’s records show that “1,300 customers have spent hundreds of thousands of dollars looking up SSNs, birthdays, drivers license records, and obtaining unauthorized credit and background reports on more than four million Americans,” according to Krebs. The records include 1.02 million SSNs and approximately 3 million date of birth records.

In addition to SSNs and dates of birth, SSNDOB’s access to the data broker’s networks likely provided a wealth of additional personal information that would allow an identity thief to take out fraudulent loans in your name. This is because financial institutions often ask specific personal questions about a person’s financial history, such as the precise amount of a recent mortgage payment. Armed with all the answers to these types of questions, an ID thief would easily bypass the security checks meant to keep him or her out – perhaps even more easily than the victim, because people often forget or mistake certain details about their financial histories.

As it stands now, the companies that fell victim to the SSNDOB botnet attack are investigating the issue. It is not currently known precisely how many people have been affected by the breach. Krebs says that he will release two subsequent reports soon, which may provide more details.

So stay tuned – and, seriously, check out your credit report with a fine-toothed comb.

Editors' Recommendations

Andrew Couts
Former Digital Trends Contributor
Features Editor for Digital Trends, Andrew Couts covers a wide swath of consumer technology topics, with particular focus on…
How to enable picture-in-picture for YouTube on your Mac
Macbook Air

If you want to have a bit of music playing in the background or want to have your favorite YouTube video running in the corner of your screen, then the picture-in-picture YouTube feature needs to be on your radar. This allows you to turn your YouTube videos into a tiny pop-up window that can be moved and repositioned around your screen.

Mac users have several ways to activate the feature, including support on both Safari and Google Chrome. There's also a nifty Chrome extension that simplifies the task to a single button press. Here's a look at how to enable picture-in-picture for YouTube on your Mac.

Read more
How to change your Gmail password
pilot testing drivers licenses internet rolls two us states password

Changing your Gmail password is incredibly important for your online security. If you're anything like the average user, your Gmail account is linked to dozens of other organizations and programs – and if your account gets hacked, there's no telling what sort of damage can be done.

Because of this, it's crucial to change your Gmail password at regular intervals. Google makes this a rather painless process, and it should take no more than a few seconds from start to finish.

Read more
Best Buy deals: Save on laptops, TVs, appliances, and more
best buy shuts down insignia line smart home products store 2 768x768

Best Buy is always a great retailer to turn to if you’re looking for some savings. There are almost always Best Buy deals taking place on TVs, appliances, and devices we use to navigate the digital world. In fact, right now at Best Buy you can find some of the best TV deals, best laptop deals, and best phone deals that can be shopped, and we haven’t even mentioned the deals on tablets and home audio equipment currently taking place at Best Buy. We’ve rounded up all of the best Best Buy deals you can shop right now and categorized them for your convenience below, so read onward for some great opportunities to save.
Best Buy TV deals

There may be no better place to purchase one of the best TVs than Best Buy. There is almost always some huge savings to find on TVs at Best Buy, and that’s certainly the case right now. You’ll find deals top TV brands like Sony, Samsung, and LG, and more budget-friendly brands like TCL and Hisense are in play, too.

Read more