Russia

Pentagon breach exposed data on over 3 million people – media

RT English · 2026-09-29

AI SUMMARY

• What happened: A security breach in the Pentagon's personnel system exposed sensitive data of over three million individuals, including military personnel and their families, due to unauthorized access to the Defense Manpower Data Center (DMDC) system. • Why it matters: The breach raises significant concerns about the security of sensitive information related to military personnel and highlights vulnerabilities in federal cybersecurity protocols, following a similar incident involving the FBI's recruitment website. • What to watch next: The Pentagon's response to the breach, including the implementation of improved security measures and the ongoing investigation into the incident, as well as potential impacts on public trust in U.S. defense and law enforcement agencies.

**Pentagon Data Breach Exposes Sensitive Information of Over 3 Million Individuals**

A significant security breach within the Pentagon's personnel system has reportedly compromised sensitive data belonging to more than three million individuals, including military personnel and their families. This alarming incident has been highlighted by several media outlets, citing U.S. defense officials.

The breach involved the Defense Manpower Data Center (DMDC), which is responsible for maintaining comprehensive records related to military personnel. According to reports, unauthorized access to the DMDC system occurred between October 2025 and July 2026, affecting approximately 2.76 million living individuals and an additional 294,000 deceased persons. The exposed data includes Social Security numbers, personal details, and information regarding military jobs and occupational specialties.

The DMDC maintains a vast database of over 60 million records, which encompasses active-duty and reserve troops, civilian employees, contractors, retirees, veterans, and military family members. The scale of the breach raises significant concerns regarding the security of sensitive information related to those who serve or have served in the military.

The breach was first reported by the Military Times, which cited an internal notice received by an affected individual. This notice confirmed the breach and was corroborated by two unnamed defense officials. It revealed that a "security vulnerability" in a file-sharing system allowed unauthorized users to access unencrypted personal information. The Pentagon has stated that the vulnerability was patched "immediately" after its discovery, although it took nearly nine months for officials to recognize the unauthorized access.

In response to the breach, the DMDC has offered affected individuals a year of free credit monitoring services to help mitigate potential risks associated with identity theft. However, as of now, the Pentagon has not officially confirmed the breach or provided details regarding the identity of the perpetrators or the intended use of the accessed information.

This incident follows a separate breach involving the FBI's recruitment website, which has also raised concerns about cybersecurity within federal agencies. The hacking group ShinyHunters claimed responsibility for stealing personal data related to nearly all FBI agents, their spouses, and job applicants. They asserted that their motives were not financially driven and instead demanded the removal of a cybersecurity advisory published by the FBI in May, which they claimed contained false allegations against them.

The FBI has acknowledged the breach and is currently investigating the incident, although it has not yet determined the specifics of how the breach occurred or the extent of the data theft. Employees have been notified of the situation as the agency works to address the security concerns raised by this incident.

As cybersecurity threats continue to evolve, the recent breaches at both the Pentagon and the FBI underscore the critical need for robust security measures to protect sensitive information. The implications of these breaches could have far-reaching effects on the individuals involved, as well as on the trust and integrity of U.S. defense and law enforcement agencies.

The Pentagon and the FBI are expected to face increased scrutiny regarding their cybersecurity protocols in the wake of these incidents, as both agencies work to ensure the protection of personal data and rebuild public confidence in their ability to safeguard sensitive information.

Source: RT English
RELATED NEWS

More Stories

All News
Russia

Almost 37,000 new IT companies emerge in Russia in 1H 2026 — PM

• What happened: In the first half of 2026, approximately 37,000 new IT companies were established in Russia, according to Prime Minister Mikhail Mishustin. Ove...

Russia

Russian envoy meets US treasury, energy officials in Washington, sources say

• What happened: Kirill Dmitriev, the Russian president's special representative for investment and economic cooperation, met with US Treasury and Energy D...

Russia

Russian cosmonauts cook up special dinner with national dishes onboard ISS

• What happened: Russian cosmonauts aboard the International Space Station (ISS) prepared a special dinner featuring modern Russian cuisine, guided by chefs on ...

Russia

Technologies play key role in competition in marine sphere — Russian presidential aide

• What happened: Nikolay Patrushev, aide to the Russian President, emphasized the critical role of advanced technologies in international maritime competition d...

Russia

VTB projects Russian banking sector’s profit at up to $53 bln in coming three years

• What happened: VTB forecasts that the net profit of Russia's banking sector will range between 3.8 trillion and 4.5 trillion rubles ($45-53 billion) over...

Russia

Halting AI race unrealistic as caution becomes losing strategy — expert

• What happened: Dmitry Tkachev, a software development expert, stated that halting the AI race is unrealistic as caution has become a losing strategy for corpo...