Skip to main content

Robinhood reports data breach affecting 7 million customers

Online stock trading platform Robinhood has been hit by a data breach affecting about seven million of its customers, the company revealed on Monday, November 8.

The Menlo Park, California-based company said the “data security incident” took place on Wednesday, November 3, when an unauthorized third party “obtained access to a limited amount of personal information.”

Initial investigations suggest the culprit tricked a customer support employee into giving them access to certain customer support systems.

It said the person behind the incident managed to obtain a list of email addresses for around five million people and full names for a different group of around two million people.

Around 310 people may have had additional personal information taken, including name, date of birth, and zip code, with a subset of approximately 10 customers having more extensive account details revealed, Robinhood said, adding that it is in the process of contacting those affected by the breach.

It said it believes no Social Security numbers, bank account numbers, or debit card numbers were exposed and that there has been no financial loss to any customers as a result of the incident.

After it contained the intrusion, Robinhood said the culprit demanded an extortion payment. The company then contacted law enforcement and is now examining the incident with the help of an outside security firm.

“As a safety first company, we owe it to our customers to be transparent and act with integrity,” Robinhood chief security officer Caleb Sima said in message posted on the company’s website. “Following a diligent review, putting the entire Robinhood community on notice of this incident now is the right thing to do.”

Robinhood was founded by two Stanford graduates in 2013 with the aim of making investing easier and to “democratize finance for all.”

Editors' Recommendations

Trevor Mogg
Contributing Editor
Not so many moons ago, Trevor moved from one tea-loving island nation that drives on the left (Britain) to another (Japan)…
Hackers just stole personal data from millions of Acer customers
acer swift 3 13 2019 review acerswift3132019

Acer has just confirmed that its servers were beached by a group of hackers called Desorden. The hackers managed to steal over 60 gigabytes worth of data containing sensitive information about millions of Acer's customers.

The compromised information includes the names, addresses, and phone numbers of several million clients, but also restricted corporate financial data.

Read more
This vaccine passport app data breach is a cautionary tale
Man frustrated at computer.

A security blunder by proof-of-vaccination app Portpass provides a reminder that third-party apps may not protect your privacy and security. According to CBC News, Portpass exposed potentially hundreds of thousands of users’ personal information on its unsecured website.

After receiving a tip that the user profiles on the app’s website were accessible by members of the public, CBC verified the claim. While on the website, CBC was able to see users’ personal information, email addresses, blood types, birthdays, phone numbers, and photo identification, including driver’s licenses and passports.

Read more
T-Mobile says 48 million people are affected by recent cyberattack
Un-Carrier

UPDATE: T-Mobile said on August 20 that its investigations have revealed that an additional 5.3 million customers are affected by the attack, along with another 667,000 former customers, bringing the total number affected to about 54 million.

T-Mobile has released more details regarding what it's describing as a “highly sophisticated cyberattack” on its computer systems that it learned of last week.

Read more