Data Breaches

AT&T Says Data on 73 Million Customers Leaked on Dark Web

AT&T used the Easter holiday weekend to quietly share details on data that surfaced on the dark web roughly two weeks ago.

AT&T Dark Web Data Leak

AT&T on Saturday said that data on roughly 73 million current and former customers was exposed on the dark web, including social security numbers and other personal information.

According to the telecommunications giant, the data set appears to be from 2019 or earlier, impacting approximately 7.6 million current AT&T account holders and approximately 65.4 million former account holders.

Dallas, Texas-based AT&T used the Easter holiday weekend to quietly share the update on data that surfaced on the dark web roughly two weeks ago.

“AT&T has determined that AT&T data-specific fields were contained in a data set released on the dark web approximately two weeks ago,” the company said in a statement. “While AT&T has made this determination, it is not yet known whether the data in those fields originated from AT&T or one of its vendors. With respect to the balance of the data set, which includes personal information such as social security numbers, the source of the data is still being assessed.”

The company said a “robust investigation” investigation is underway, supported by internal and external cybersecurity teams. 

“Currently, AT&T does not have evidence of unauthorized access to its systems resulting in exfiltration of the data set,” the statement said. “The company is communicating proactively with those impacted and will be offering credit monitoring at our expense where applicable.”

Advertisement. Scroll to continue reading.

The company says the incident has not had a material impact on its operations.

In March 2023, AT&T notified roughly 9 million wireless customers that their customer proprietary network information (CPNI) was compromised in a data breach at a third-party vendor.

Late last month the telco experienced an outage that knocked out cellphone service for many of its customers across the US, but the company said the outage was not caused by a cyberattack.

Related Content

Artificial Intelligence

A threat actor is using three AI harnesses for vulnerability research, exploitation, and attack orchestration.

Data Breaches

Hackers impersonated the company’s personnel and contacted its employees to gain access to Astrana Health’s servers.

Data Breaches

The cybercrime group is unhappy with its description in an FBI report and threatens to leak stolen information. 

Data Breaches

The attackers used a compromised BigCommerce application key held by Ribon to access customer data.

Data Breaches

The cybersecurity firm believes the data breach was the result of the May 2026 TanStack supply chain attack.

Data Breaches

Gyazo maker Helpfeel said the attacker exploited a vulnerability in its image upload server to gain unauthorized access.

Data Breaches

Revolut allegedly fed customer information to hackers impersonating an Italian government agency for five months.

Artificial Intelligence

Spanish regulators say an AI agent chained together a successful login, vulnerability discovery, and access to personal data in a potential milestone for autonomous...

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version