Massive Data Exposure at IDscan.net Identity Verification Platform
The identity verification platform IDscan.net has suffered a major data exfiltration event targeting its image repository, resulting in the compromise of approximately 153 million driver's license records, 10 million identification cards, and millions of supplementary travel and medical documents. Threat actors utilized the Russian cybercrime forum 'Exploit' to coordinate the sale of this PII via the 'Nexus' dark web storefront. This breach constitutes a significant supply chain failure, as the stolen high-fidelity digital scans facilitate advanced impersonation attacks, deepfakes, and fraud involving Commercial Driver's Licenses (CDL). The FBI New Orleans Field Office is leading the ongoing federal investigation into the breach.
Global IDV Supply Chain Compromise: idscan.net
An identity verification (IDV) supply chain compromise allegedly targeting idscan.net has exposed between 153 million and 170 million driver's license records from the United States and Canada. Exfiltrated data consists of high-resolution digital scans of government-issued IDs and associated PII, including full names, dates of birth, and residential addresses. Technical investigations are currently targeting API endpoint exploitation, unauthorized third-party access tokens, or cloud storage misconfigurations as the primary breach vectors. This compromise creates systemic risk by undermining the KYC/AML integrity of downstream financial services, enabling high-fidelity synthetic identity fraud and sophisticated account takeover (ATO) attacks.