
Researchers from vx-underground have reported a significant data breach involving sensitive information leaked from the consumer credit reporting agency TransUnion. The breach is linked to a hacker group using the moniker "USDoD," prompting an investigation by the FBI into this alarming breach of personal data security.
TransUnion, an American consumer credit reporting agency, collects and aggregates information on over a billion individual consumers across more than thirty countries, including approximately 200 million credit-active consumers in the United States alone.
The breach, disclosed by the threat actor "USDoD," involves a massive 3GB database containing highly sensitive Personally Identifiable Information (PII) of around 58,505 individuals worldwide, including the Americas and Europe. This data reportedly dates back to March 2, 2022, potentially indicating the timeline of the breach itself.
The leaked information encompasses a wide range of personal details, including first and last names, Internal TransUnion identifiers, gender, passport information, place of birth, date of birth, marital status, age, current employer, detailed employment information, summaries of financial transactions, credit scores, loan information, outstanding loan balances, loan origins, and the initiation date of TransUnion’s monitoring of the individuals’ information.
"USDoD" is a well-known name in the cybersecurity sector, and they have been previously linked to high-profile security breaches. It recently leaked sensitive data from the multinational aerospace corporation Airbus. "USDoD" posted information about thousands of the company’s vendors on the dark web. The breach occurred after the hacker compromised the account of a Turkish airline employee, gaining unauthorized access to an Airbus web portal.
Winston House, 3rd Floor,
Units 306-309, 2-4 Dollis park,
London, N3 1HF
020 8349 4363
© 2026, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543