TechNewsReel
Live

IDScan.net Breach Exposes 153 Million Driver's Licenses in 'Catastrophic' Leak

A massive cloud platform breach has leaked high-resolution government IDs, including infrared and UV scans, from millions of US and Canadian citizens.

TechNewsReel Newsroom · September 15, 2026

Louisiana-based identity verification firm IDScan.net has confirmed a massive data breach that exposed the personal documentation of millions of individuals across the U.S. and Canada. The leak, detected around September 1, 2026, represents a critical failure in the security of government-issued identification data.

The breach came to light after the 'Nexus' dark web marketplace began advertising a dataset containing over 170 million total records. According to confirmed reports, the stolen data includes 153 million driver's licenses, 10 million ID cards, 3 million travel documents, and 579,000 medical cards. The unauthorized access targeted the company's cloud platform, and the Nexus marketplace claimed that data had been continuously exfiltrated for over a year. Among the high-profile victims, the breach included the driver's license of U.S. Defense Secretary Pete Hegseth.

The Infrastructure of the Leak

IDScan.net operates as a third-party identity verification provider, offering 'Know Your Customer' (KYC) technology to a vast array of clients. These include Fortune 500 companies such as Target, FedEx, and Hertz, as well as hotels, bars, and retail locations. Because these businesses outsource their verification processes to IDScan, the breach affects millions of people who never had a direct contractual relationship with the firm but had their IDs scanned at a third-party business.

Why the Data is High-Value

This breach is particularly severe due to the nature of the stolen images. Unlike standard photographs, the leaked dataset includes high-resolution infrared and UV scans of government IDs. These specialized scans are used by verification systems to detect forgeries; however, in the hands of criminals, they provide a blueprint for creating near-perfect fraudulent identification.

Threat analyst group vx-underground described the event as a "catastrophic data breach," calling it likely one of the worst they have ever seen. Driver's license numbers serve as primary identifiers for accessing financial accounts, claiming government benefits, and completing notarized transactions, making this dataset a goldmine for identity theft and financial fraud.

Ongoing Investigations

In response to the leak, the FBI's New Orleans field office opened a formal inquiry into the breach around September 1, 2026. Investigators are working to determine the full scope of the unauthorized cloud access and the identity of the actors behind the Nexus marketplace.

While the FBI inquiry is active, the industry is now closely watching how third-party identity vendors manage the massive 'honeypots' of sensitive data they create. The primary concern remains the long-term vulnerability of the affected individuals, as government-issued ID numbers cannot be changed as easily as passwords or credit card numbers.

Sources

Get a notification when a big story breaks. A few a day at most — no spam.