According to a Bleeping Computer article, A Plant City police officer stored their work login on a personal device. Infostealing malware grabbed it, and hackers used those valid credentials to log straight into Florida’s Driver and Vehicle Information Database (DAVID) without tripping a single alarm.
Florida’s Department of Highway Safety and Motor Vehicles confirmed the intrusion after the extortion gang ShinyHunters started bragging about it online. The group, known for hitting Ticketmaster and AT&T, claimed they exploited a flaw in the password-reset flow. State investigators found the reality was far plainer: basic credential theft.
The attackers spent roughly twenty-four hours inside the network starting September 3, looping through individual record IDs to scrape personal details and photos. To prove they had access, they posted a screenshot of Jeffrey Epstein’s state driver profile before officials cut off the account on September 4. The group claims to have pulled over 200,000 records.
DMV files fetch high prices on dark web forums because they contain everything required to beat automated identity checks. Fraudsters use high-resolution license photos and signatures to pass Know-Your-Customer screenings on crypto exchanges and fintech apps. Stolen addresses and license numbers let them open credit cards, while registration details provide easy ammunition for fake SunPass toll collection texts that look legitimate.
Basic endpoint hygiene failed here. Enterprise networks don’t get cracked by brilliant code; people just leave the keys lying around on unmanaged phones and laptops.
If you have a Florida driver’s license, freeze your credit files with Equifax, Experian, and TransUnion. A freeze blocks lenders from pulling your report, which stops criminals from taking out loans in your name even if they have your full state record. Delete any text messages claiming you owe unpaid toll fees, and pull your free credit reports from AnnualCreditReport.com to confirm nobody has applied for financing under your Social Security number.
Projects
- SANS SEC504 (aka GCIH)
- TryHackMe
White Papers
- SANS 2026 Security Awareness & Culture Report – https://sansorg.egnyte.com/dl/f6DcygVwxhkm
Videos
Articles
- ChatGPT Flaw Let a Planted Prompt Send a Victim’s Gmail Data to Another Account – Check Point Research said in a report published today that a single instruction planted in a ChatGPT conversation could cause ChatGPT to quietly work for an attacker while answering the user’s question as usual.
- Autonomous AI Agents Compromise Thousands of Credentials in Under Six Hours – Threat actors are continuing to leverage artificial intelligence (AI) to streamline their operations, with one financially motivated hacking group employing an autonomous, multi-agent attack framework to carry out a large-scale credential harvesting campaign within six hours.
- ShinyHunters hackers claim breach of Florida “DAVID” DMV database – The ShinyHunters extortion gang claims it breached an online platform for the Florida Department of Motor Vehicles database known as “DAVID” and stole over 200,000 records about drivers in the state.
- An alignment assessment of recent cybersecurity incidents – Anthropic’s assessment found four cases where Claude AI models accessed real systems due to cybersecurity evaluation misconfigurations.
- LG strongly denies TV spying claims, says tracking and snooping concerns ‘not true’ — online investigation claims 216,000,000 TVs spy and record audio
- Surfshark Systems Targeted by Hackers – A misconfigured test server containing engineering material, including internal configurations, was accessed by threat actors.
- Florida confirms DMV database breached via stolen police account – The Florida Department of Highway Safety and Motor Vehicles (FLHSMV) has confirmed that its DAVID driver database suffered a data breach after the ShinyHunters extortion gang claimed to have compromised the system.

