[REVISION HISTORY]
Pentagon military personnel data breach
Updated 2 times since CLSTR started tracking revisions of this situation.
What changed
2026-09-29 05:55 UTC → 2026-09-29 07:24 UTC ·
added
removed
A data breach within the Pentagon’s human resources system has exposed the personal information of millions of current and former military personnel. Unauthorized users accessed a vulnerable server belonging to the Defense Manpower Data Center (DMDC) starting in October 2025, with the breach remaining undetected until July 2026. Subsequent confirmation from the Pentagon specified that the breach affects 2.76 million ‘living individuals’ and 294,000 ‘deceased individuals.’ The compromised group includes military personnel, civilian employees, contractors, and their families. Exposed data includes unencrypted Social Security numbers, names, dates of birth, contact information, and occupational specialties. While the Pentagon stated there are currently ‘no indications of misuse’ of the data, national security experts warn that the information—particularly the combination of Social Security numbers and occupational specialties—could be used by foreign intelligence services to track personnel or by cybercriminals for extortion. The DMDC, which manages over 60 million personnel records, remediated the vulnerability immediately upon discovery. The identity of the attackers remains unknown. In response to the incident, the Department of Defense is offering identity protection and credit monitoring services to those affected. The breach continues to raise significant national security and counterintelligence concerns regarding the vulnerability of military human resources infrastructure.
Versions
- 2026-09-29 07:24 UTC Pentagon military personnel data breach
- 2026-09-29 05:55 UTC Pentagon military personnel data breach
- 2026-09-28 20:33 UTC Pentagon military personnel data breach
Only revisions since CLSTR began indexing content versions appear here. Select a version to see what changed compared to the one before it.