HomeIntelligenceBrief
BREACH BRIEF 🟠 High Breach

Florida DMV Database Breached via Stolen Police Account – Over 200K Driver Records Exposed

The Florida DMV confirmed that the ShinyHunters extortion group accessed the DAVID driver database using credentials from a Plant City police officer that were stored on a personal device. More than 200,000 driver records were reportedly stolen, illustrating a critical lapse in privileged‑account protection that directly impacts audit and compliance readiness.

Verisq™ Intelligence · 📅 September 11, 2026 · 📰 bleepingcomputer.com
🟠
Severity
High
BR
Type
Breach
🎯
Confidence
High
🏢
Affected
3 sector(s)
Actions
3 recommended
📰
Source
bleepingcomputer.com

Florida DMV Database Breached via Stolen Police Account – Over 200K Driver Records Exposed

What Happened — The Florida Department of Highway Safety and Motor Vehicles confirmed that the DAVID driver‑license database was accessed by the ShinyHunters extortion group. Attackers used credentials belonging to a Plant City Police Department employee that had been stored on the officer’s personal device. The compromised account was used to download driver records, with the gang claiming more than 200,000 records were taken.

Why It Matters for Trust & Control Assurance

  • Demonstrates the risk of unmanaged privileged credentials — a core control‑area that continuous‑monitoring programs are built to protect.
  • Highlights the need for documented credential‑storage policies and evidence of enforcement to satisfy audit requirements.
  • Shows how a single credential failure can cascade into a large‑scale data exposure, underscoring the importance of real‑time access‑control alerts and forensic logging.

Who Is Affected – State government agencies (DMV/transportation), law‑enforcement partners, and the 200K+ Florida residents whose driver‑license data were exposed.

Recommended Actions – Review and harden privileged‑account management: enforce multi‑factor authentication, prohibit personal‑device storage of credentials, and implement continuous monitoring of privileged‑access logs. Collect evidence of policy adherence for audit readiness. Source: BleepingComputer

Technical Notes – Attack vector: stolen credentials from a personal device (no public‑facing vulnerability disclosed). Data types accessed: personal identification, vehicle registration, and associated images. Source: same as above

📰 Original Source
https://www.bleepingcomputer.com/news/security/florida-confirms-dmv-database-breached-via-stolen-police-account/

This Verisq Intelligence Brief is an independent analysis. Read the original reporting at the link above.

Third-party risk

Does this breach reach you?

Verisq continuously monitors your vendors for breach and ransomware activity, so the question stops being whether it happened and becomes whether it reaches you.

See a live Trust Center →