AT&T INC.
ent_01a035b4f3640e547e13fa19833b2255
Disclosures
25+
Leak Site · State AG · SEC 8-K · 14 jurisdictions
Multi-filing incidents
4
incidents joining 2+ filings here
Max affected reported
51,226,382
nationwide · State AG OR
Leak-site claims
3
unverified actor claims
Identity resolution
- Canonical name
- AT&T INC.
- Normalized
- at t— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300Z40J86GGSTL398
- SEC EDGAR CIK
- 0000732717
- Domain
- att.com
Disclosure history (newest 25)newest first
- GLOBALLeak Siteas victim2026-09-18
Revenue: $125.6 billion Initial access was via a CX contractor doing business with AT&T. Access originally used as vehicle for Equipment Changes/Call Forwarding (thanks a lot TORCH patch) - VPN + HVD (both external and internal MyDesktop) instances were accessed for a prolonged period without any detection or incident response taking place. Certificates exported from certlm in the VDI + OPUS self installer (automatically joins EP to S1) opened up the door to the VPN. Salesforce data was accessed via a project manager ATTUID + a DirecTV contractor who for some reason had the apps available in Salesforce. AT&T CSO, if you are reading this, you are to contact us ASAP!
- GLOBALLeak Siteas victim2025-10-21
AT&T Careers is the employment division of AT&T, an American multinational conglomeric communications company. It offers opportunities in various fields including technology, sales, marketing, customer service, cybersecurity. The company seeks individuals interested in the tech industry with drive for innovation. Roles include internships, entry-level, management, and more experienced positions. It provides competitive benefits and a diverse, inclusive workplace.
- Illinois State AGas victim2024-09-01
AT&T SERVICES, INC filed a data-breach notice with the Illinois Attorney General in September 2024 (case 24-09-038). The register records the breach as discovered on July 9, 2024. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- FEDERALSEC 8-Kas victim2024-07-12
AT&T Inc. disclosed that threat actors accessed a third-party cloud workspace between April 14-25, 2024, exfiltrating call and text metadata (logs) for nearly all wireless customers from May 2022 to Jan 2023. The data includes phone numbers, interaction counts, durations, and some cell site IDs, but not call content or PII like SSNs. AT&T contained the access and is cooperating with law enforcement. DOJ approved a delayed disclosure.
- Delaware State AGas victim2024-04-25
AT&T notified customers that their personal information (names, SSNs, DOBs, account numbers, passcodes) was found in a dataset released on the dark web on March 17, 2024. The data originated from June 2019. AT&T reset affected passcodes and offered one year of credit monitoring via Experian. The incident status is contained.
- New Hampshire State AGas victim2024-04-15
AT&T Inc. notified the New Hampshire Attorney General that personal information of 61,130 NH residents was found in a dataset released online on March 17, 2024. AT&T determined on March 26, 2024, that its data was included. No unauthorized access to AT&T systems was found; data likely resulted from stolen credentials. Data included names, SSNs, DOBs, and passcodes from 2019 or earlier. AT&T reset passcodes and offered credit monitoring.
- Washington State AGas victim2024-04-10
AT&T Inc. notified Washington AG of a data breach involving customer PII (names, SSNs, DOBs, account numbers, passcodes) found in a dark web dataset released March 17, 2024. AT&T determined the compromise on March 26, 2024. 378,471 Washington residents affected. AT&T reset passcodes and offered credit monitoring. Investigation ongoing; source of incident unidentified.
- Massachusetts State AGas victim2024-04-10
AT&T Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2024-04-10. 161,272 Massachusetts residents were affected.
- Oregon State AGas victim2024-04-10
AT&T Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2024-04-10. 51,226,382 individuals were affected.
- South Carolina State AGas victim2024-04-09
AT&T Inc. notified South Carolina residents that customer information, including names, SSNs, and passcodes, was found in a dataset released on the dark web on March 17, 2024. AT&T determined this on March 26, 2024. The data appears to be from June 2019 or earlier. AT&T reset affected passcodes and offered one year of credit monitoring via Experian.
- California State AGas victim2024-04-09
AT&T Inc. notified customers that their personal information was compromised after appearing in a dataset released on the dark web on March 17, 2024. AT&T determined customer data was included on March 26, 2024. Affected data may include name, email, address, phone, SSN, DOB, account number, and passcode. Data dates from June 2019 or earlier. AT&T reset passcodes and offered credit monitoring.
- Montana State AGas victim2024-04-09
AT&T Inc. notified Montana residents that customer information was compromised after appearing in a dataset released on the dark web on March 17, 2024. AT&T determined on March 26, 2024, that data including names, SSNs, and account details was involved. AT&T reset passcodes and offered one year of credit monitoring via Experian.
- Vermont State AGas victim2024-04-09
AT&T notified consumers of a data breach where customer information was found in a dataset released on the dark web on March 17, 2024. The data, originating from June 2019 or earlier, included names, contact info, SSNs, and account credentials. AT&T reset passcodes for affected accounts and offered one year of credit monitoring via Experian.
- Indiana State AGas victim2024-04-09
AT&T Inc reported a data breach to the Indiana Attorney General. 1,437,078 Indiana residents were affected. 51,226,382 individuals affected in total.
- Illinois State AGas victim2024-04-01
AT&T, INC. filed a data-breach notice with the Illinois Attorney General in April 2024 (case 24-04-007). The register records the breach as discovered on March 17, 2024. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Wisconsin State AGas victim2024-03-30
AT&T reported a data breach to the Wisconsin DATCP. The public was notified on 2024-03-30. The incident occurred on June 2022. Data accessed: The information varied by individual and account, but may have included full name, email address, mailing address, phone number, social security number, date of birth, AT&T account number and AT&T passcode. 7,600,000 individuals were affected.
- Illinois State AGas victim2024-03-01
AT&T SERVICES, INC filed a data-breach notice with the Illinois Attorney General in March 2024 (case 24-03-060). The register records the breach as discovered on December 14, 2023. Additional entities named: BCBS OF IL. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Illinois State AGas victim2024-02-01
AT&T SERVICES, INC filed a data-breach notice with the Illinois Attorney General in February 2024 (case 24-02-187). The register records the breach as discovered on November 5, 2023. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Vermont State AGas victim2023-07-13
AT&T disclosed a data breach affecting customers in Vermont. On or about May 17, 2023, an employee retained customer PII without authorization, including SSN, driver's license, credit card numbers, and DOB. AT&T took action against the employee and offered one year of Experian IdentityWorks. Notification was sent July 13, 2023.
- GLOBALLeak Siteas victim2022-10-28
- New Hampshire State AGas victim2017-05-19
AT&T notified the New Hampshire Attorney General of a breach affecting 78 NH residents. Unauthorized parties likely obtained customer credentials via malware or phishing, accessing online accounts between Jan 25 and Apr 20, 2017. Driver's license numbers were visible on a single page within accounts. AT&T locked affected accounts, removed license visibility, and offered one year of credit monitoring and identity restoration services.
- Montana State AGas victim2017-05-19
AT&T notified Montana residents of unauthorized access to online accounts between Jan 25 and Apr 20, 2017. Attackers used stolen credentials, likely obtained via phishing, to view driver's license numbers. AT&T locked accounts and offered credit monitoring.
- Massachusetts State AGas victim2017-05-19
AT&T reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2017-05-19. 383 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2015-04-23
AT&T reported unauthorized access to customer accounts between February and July 2014. The incident involved an effort to request codes allowing phones to be used on other networks. While there is no evidence that Social Security Numbers or Customer Proprietary Network Information (CPNI) were acquired, this data was contained in the accessed system. AT&T offered one year of free credit monitoring to affected customers and strengthened account security policies.
- Massachusetts State AGas victim2015-04-21
AT&T reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2015-04-21. 605 Massachusetts residents were affected. The report records the breach type as electronic.
Subsidiary disclosures (3)filed by group companies
◈ These filings were made by or about subsidiaries of AT&T INC. — not by AT&T INC. itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- Massachusetts State AGvia Cricket Wireless LLC2018-08-21
Cricket Wireless LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2018-08-21. 1 Massachusetts residents were affected. The report records the breach type as electronic.
- Massachusetts State AGvia Cricket Wireless LLC2018-08-17
Cricket Wireless LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2018-08-17. 1 Massachusetts residents were affected. The report records the breach type as undefined.
- California State AGvia AT&T MOBILITY LLC2014-06-10
AT&T Mobility, LLC reported a data breach to the California Attorney General. The unauthorized access occurred between April 9, 2014, and April 21, 2014. The provided source document contains only the filing metadata and an empty attachment placeholder; no narrative details regarding data types, affected counts, or specific attack vectors are available in the text.