[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f9pazbszxwh7k":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"modifiedDate":12,"contentUpdatedAt":12,"source":13,"sourceUrl":14,"sourceUrls":15,"pwnCount":18,"affectedCount":18,"affectedCountStatus":19,"affectedCountLowerBound":20,"affectedCountUnit":21,"hasEnglishDescription":4,"severity":22,"dataClasses":23,"description":30,"seoTitle":31,"seoTitleEn":32,"seoDescription":31,"seoDescriptionEn":33,"logoUrl":34,"isVerified":4,"isSensitive":4,"isSpamList":35,"isMalware":35,"company":36},"6a71696910fd7c37a041fb5e","TransUnion2025","TransUnion 2025 Data Breach","transunion-2025","transunion.com","2025-07-28T00:00:00.000Z","2026-08-04T04:24:08.704Z","TransUnion notice, Maine and Texas Attorneys General, and BleepingComputer","https:\u002F\u002Fweb.archive.org\u002Fweb\u002F20250828123933id_\u002Fhttps:\u002F\u002Fwww.maine.gov\u002Fagviewer\u002Fcontent\u002Fag\u002F985235c7-cb95-4be2-8792-a1252b4f8318\u002F3dcd9b7c-bce3-4685-bffd-f728ce96e2fd.html",[14,16,17],"https:\u002F\u002Foag.my.site.com\u002Fdatasecuritybreachreport\u002Fapex\u002FDataSecurityReportsPage","https:\u002F\u002Fwww.bleepingcomputer.com\u002Fnews\u002Fsecurity\u002Ftransunion-suffers-data-breach-impacting-over-44-million-people\u002F",4461511,"known",null,"people","Critical",[24,25,26,27,28,29],"Names","Physical addresses","Phone numbers","Email addresses","Dates of birth","Social security numbers","\u003Cp>\u003Cstrong>The 2025 TransUnion data breach\u003C\u002Fstrong> involved unauthorized access to a third-party application used for the credit-reporting company's U.S. consumer-support operations. State regulatory records report 4,461,511 affected people.\u003C\u002Fp>\u003Cp>TransUnion provides credit and identity-information services to consumers and businesses. According to the company's notice, credit reports and core credit-file information were not affected; the personal information involved varied by individual.\u003C\u002Fp>\u003Ch2>When did the TransUnion data breach occur?\u003C\u002Fh2>\u003Cp>The Maine Attorney General record lists July 28, 2025 as the breach date. The Texas record reports an unauthorized-access interval of July 28 through July 29.\u003C\u002Fp>\u003Cp>The sources differ by one day on discovery: the Texas record says July 29, while the Maine record says July 30. Consumer notifications began on August 26, and the Texas record was published on September 4.\u003C\u002Fp>\u003Ch2>How did the incident happen?\u003C\u002Fh2>\u003Cp>According to TransUnion's official letter, unauthorized parties accessed some personal information in a third-party application serving its U.S. consumer-support operations. The company did not disclose the technical entry method.\u003C\u002Fp>\u003Cp>BleepingComputer linked the incident to the wave of data theft from TransUnion's Salesforce environment. TransUnion did not officially name the attacker and said that credit reports and core credit information were not present in the affected application.\u003C\u002Fp>\u003Ch2>What information was affected?\u003C\u002Fh2>\u003Cp>The Texas record reports that Social Security numbers were involved. A sample reviewed by BleepingComputer contained names, billing addresses, phone numbers, email addresses, dates of birth, and unredacted Social Security numbers.\u003C\u002Fp>\u003Cp>The reviewed sample also contained some consumer-support requests, messages, and records describing the reason for a transaction. The official notice says the affected elements varied by person, so not every listed data type applied to every individual.\u003C\u002Fp>\u003Ch2>How many people were affected?\u003C\u002Fh2>\u003Cp>Maine and Texas regulatory records report 4,461,511 affected people nationwide. The 377,357 Texas residents and 16,828 Maine residents are included in that national total and are not additional people.\u003C\u002Fp>\u003Ch2>What risks can this incident create?\u003C\u002Fh2>\u003Cp>Social Security numbers combined with dates of birth and contact details can support identity theft, fraudulent credit applications, or account-takeover attempts. Billing addresses and transaction context can make targeted fraud messages more convincing.\u003C\u002Fp>\u003Cp>Although credit reports were not affected, attackers may impersonate TransUnion, a bank, or a lender and ask for a verification code, password, or additional personal information.\u003C\u002Fp>\u003Ch2>How did TransUnion respond?\u003C\u002Fh2>\u003Cp>TransUnion said it strengthened security controls and offered affected people 24 months of free credit monitoring, identity-protection services, and fraud assistance through Cyberscout.\u003C\u002Fp>\u003Ch2>What should affected people do?\u003C\u002Fh2>\u003Cp>Notice recipients should review credit reports, new credit applications, and financial accounts for unfamiliar activity. People whose Social Security number was involved can consider a free fraud alert or credit freeze.\u003C\u002Fp>\u003Cp>Before clicking a link in an unexpected message claiming to come from TransUnion or a financial institution, verify it through an official channel. Do not share a password, PIN, or one-time verification code.\u003C\u002Fp>","","TransUnion Data Breach (4.5 Million People Affected)","The TransUnion data breach affected 4,461,511 people. Review the timeline, exposed personal information, and practical protection steps.","\u002Fuploads\u002Flogo\u002Ftransunion.png",false,{"name":37,"sector":38,"country":39,"website":40,"websiteArchiveUrl":31,"websiteStatus":31,"websiteCheckedAt":20},"TransUnion","Financial Services","United States","https:\u002F\u002Fwww.transunion.com\u002F"]