Florida DMV confirms breach of DAVID driver database via compromised law-enforcement account
Florida's Department of Highway Safety and Motor Vehicles confirmed that attackers used a compromised law-enforcement account to breach its DAVID driver database, as the ShinyHunters extortion group claimed to have stolen more than 200,000 driver records.
- Victim
- Florida Department of Highway Safety and Motor Vehicles
- records
- 200.0K
On 11 September 2026, Florida's Department of Highway Safety and Motor Vehicles (FLHSMV) publicly confirmed that its DAVID system โ the Driver and Vehicle Information Database used by law enforcement across the state โ had been breached. The agency said it first learned of the intrusion on 4 September and traced it to a single compromised account belonging to a Plant City Police Department user, rather than a flaw in the database platform itself.
The ShinyHunters extortion group claimed responsibility, saying it had stolen more than 200,000 records about Florida drivers and threatening to release the data. According to the group, it exploited a password-reset weakness to take over multiple accounts within the system, including accounts belonging to DMV employees and, it claimed, an FBI agent. DAVID holds highly sensitive information โ addresses, Social Security numbers, dates of birth, driver's license IDs, issuance and expiration dates, registered vehicles, license transactions, insurance details and parking permits.
A credential-misuse breach, not a platform hack
FLHSMV framed the incident as misuse of legitimate credentials rather than a compromise of DAVID's underlying software, and said it moved to secure the affected account after detecting the intrusion. The breach echoed a wider pattern of ShinyHunters campaigns in this period that leaned on password-reset and credential weaknesses rather than novel exploits.
Because the agency identified and locked down the single compromised access route and characterised the exposure as limited to records reachable through that account, the incident was assessed as contained, even as the extortion threat to publish the stolen driver data remained outstanding.
Timeline
FLHSMV first learns of the intrusion and traces it to a single compromised account belonging to a Plant City Police Department user.
FLHSMV publicly confirms the breach; ShinyHunters claims to have stolen more than 200,000 records and threatens to release the data.
Sources
- bleepingcomputer.comhttps://www.bleepingcomputer.com/news/security/shinyhunters-hackers-claim-breach-of-florida-david-dmv-database/
- nbcnews.comhttps://www.nbcnews.com/tech/security/florida-dmv-says-was-hacked-shortly-major-drivers-license-breach-rcna597207
- foxnews.comhttps://www.foxnews.com/tech/dmv-breach-confirmed-hackers-claim-200000-records-stolen