The ShinyHunters extortion gang claims it breached Florida’s Driver and Vehicle Information Database. The group says it stole more than 200,000 records containing sensitive information about drivers.

The alleged Florida DMV breach has not yet received official confirmation. However, the attackers published a screenshot that appeared to show a record from the database as evidence.

Hackers claim they accessed the DAVID platform

The affected platform is known as DAVID, short for Driver and Vehicle Information Database. The Florida Highway Safety and Motor Vehicles agency operates the system.

Law enforcement agencies and government officials use DAVID to retrieve driver and vehicle information. It also serves as the primary reporting system for fatalities and serious bodily injuries.

According to the attackers, the platform contains addresses, Social Security numbers, birth dates, driver’s licence details, and registered vehicle information.

Additional sections reportedly provide access to licence transactions, previous addresses, insurance details, past vehicles, and parking permits.

Password-reset flaw allegedly exposed accounts

ShinyHunters claims it entered the DAVID platform through a vulnerability in its password-reset process.

The flaw allegedly allowed the hackers to compromise several accounts. The gang says those accounts belonged to DMV employees and an FBI agent.

After gaining access, the attackers reportedly cycled through identification numbers and downloaded related HTML pages and driver images.

ShinyHunters claims it collected more than 200,000 records after the intrusion began on September 3. However, authorities have not confirmed that figure.

The group says it has since lost access to the platform. It also claims that officials are patching the password-reset vulnerability.

Florida’s motor vehicle agency and the FBI have been contacted about the incident. Neither organization had publicly responded when the original report appeared.

Extortion gang threatens to publish data

ShinyHunters added the Florida agency to its data-leak site and threatened to release the allegedly stolen information.

Extortion groups commonly use this tactic to pressure victims into paying. They first steal sensitive data and then threaten to publish it unless the organization negotiates.

A source familiar with the activity said the group is also targeting DMV systems in other states. These attacks reportedly involve social engineering.

ShinyHunters also said it expects to announce more DMV breaches in the coming weeks. Nevertheless, those claims remain unverified.

ShinyHunters targets cloud services and SSO accounts

ShinyHunters is a well-known extortion operation that focuses on web applications and cloud software environments.

Various attackers have used the name since 2018. During the past year, the group has become particularly active in data-theft and extortion campaigns.

Its members have targeted Salesforce environments and other cloud platforms. They have also been linked to breaches affecting several major technology and consumer-service companies.

In many cases, the attackers breach third-party integration providers. They then use stolen authentication tokens to enter connected cloud services and access customer data.

Voice phishing helps attackers steal access

More recently, ShinyHunters has used voice phishing attacks against corporate single sign-on accounts.

During these attacks, criminals impersonate IT support staff. They then direct employees to phishing pages designed to steal passwords and multi-factor authentication codes.

The group has also adopted device-code phishing techniques to obtain Microsoft authentication tokens.

Once the attackers control an SSO account, they can potentially access many connected enterprise services. These may include email, cloud storage, communication tools, customer databases, and business software.

Authorities have arrested several suspects linked to operations using the ShinyHunters name. Despite those arrests, the group and associated threat actors remain active.

If confirmed, the Florida DMV breach could expose highly sensitive personal and vehicle information. It could also increase the risk of identity theft, targeted phishing, and other fraud.


0 responses to “ShinyHunters Claims Breach of Florida DMV Database”