Cloud breach linked to more than 153 million driver’s license scans
This is a DailyCyber.News update, brought to you by BareMetalCyber.com, for Friday, September 11th, 2026.
A breach at identity verification provider IDScan may have exposed highly sensitive government identity records. External reporting linked the company to a database advertised with more than 153 million driver’s license scans. IDScan has confirmed that an unauthorized third party may have accessed or copied customer information stored in its cloud platform. That information can include full names and driver’s license or other government-issued identification numbers. The company’s investigation is still underway, and reported attempts to sell the complete database haven’t been independently confirmed. The scale matters because IDScan’s technology is used by businesses across financial services, retail, hospitality, car rental, and other sectors that verify government documents. For leaders, this shows the concentration risk created when one provider retains identity material collected by many unrelated organizations. For defenders, the next steps are to monitor official notices, prepare to identify affected customers, and strengthen verification processes against the reuse of exposed identity data. Potentially affected individuals should use the identity protection services being offered and closely monitor their accounts and records for unauthorized activity.
For the sources and the full Daily Cyber newsletter, visit DailyCyber.News.