ShinyHunters Claim Breach of Florida DMV "DAVID" Database
Extortion gang alleges theft of over 200,000 driver records; agency response pending

Key Takeaways
- ShinyHunters claims breach of Florida DMV "DAVID" database and theft of over 200,000 driver records.
- Claim posted on extortion gang platform; no confirmed active exploitation or proof-of-data release observed.
- Florida DMV has not confirmed or denied the intrusion; independent verification pending.
- No patch available; DAVID platform security posture unverified.
- ShinyHunters known for high-profile claims; prior claims have varied in validity.
Quick answers
- What happened?
- The ShinyHunters extortion group has publicly claimed responsibility for breaching the Florida Department of Motor Vehicles' "DAVID" online platform, asserting the theft of more than 200,000 driver records. As of reporting, the Florida DMV and independent sources have not confirmed the intrusion or verified the volume and sensitivity of the alleged data.
- Which products are affected?
- DAVID
- What should defenders do?
- Organizations should monitor official statements from the Florida Department of Motor Vehicles and relevant CISA or state cybersecurity advisories. Verify the security posture of any DMV-related platforms. Apply defensive measures such as network segmentation and access controls. Treat the claim as unverified until independent confirmation is available.
According to a report by BleepingComputer published on 2026-09-08, the ShinyHunters extortion gang claims it breached an online platform for the Florida Department of Motor Vehicles database known as "DAVID". The group alleges it stole over 200,000 records concerning drivers in the state. The claim was posted on an extortion gang platform; however, no active exploitation, independent verification, or proof-of-data release has been observed at the time of reporting. The Florida Department of Motor Vehicles has not issued an official response confirming or denying the breach. The exact data sensitivity and whether the DAVID platform itself was compromised remain unverified. ShinyHunters are a known extortion group with a history of high-profile claims, though prior claims have varied in validity. No patch or security update is available, as the status and security posture of the DAVID platform have not been independently assessed. The impact, if the breach is confirmed, could involve potential exposure of 200,000 driver records, but the sensitivity of the data is currently unknown.
Security Details
Claim posted on extortion gang platform; no confirmed active exploitation or proof-of-data release observed. Florida DMV and independent sources have not verified the intrusion or the volume and sensitivity of the alleged data.
Affected products
DAVID
Mitigation
Organizations should monitor official statements from the Florida Department of Motor Vehicles and relevant CISA or state cybersecurity advisories. Verify the security posture of any DMV-related platforms. Apply defensive measures such as network segmentation and access controls. Treat the claim as unverified until independent confirmation is available.
Sources
BleepingComputer
ShinyHunters hackers claim breach of Florida "DAVID" DMV database
Sep 8, 2026 · 16:35
Original link
Related Security News

Times Car Confirms Data Breach Affecting 6.6 Million User Accounts
Times Car, a Japanese car-sharing service, has confirmed a data breach compromising approximately 6.6 million user accounts. The incident was disclosed late last week, with the exact attack vector and nature of exposed personal information yet to be fully specified. Authorities and the company are reportedly investigating the breach.

French Tax Administration Data Breach Exposed Hundreds of Thousands of Records via Stolen Staff Credentials
An unauthorized access incident at France's Direction Générale des Finances Publiques (DGPP) compromised tax data belonging to hundreds of thousands of taxpayers and businesses between June and July 2026. According to a report published by France's national cybersecurity agency ANSSI on 29 September 2026, the attacker used stolen staff passwords to gain entry. The agency stated the attack was 'not sophisticated' and went undetected for seven weeks due to weak security controls. ANSSI noted that neither the tax administration nor the agency itself observed data exfiltration, though the breach resulted in unauthorized access to sensitive fiscal information.



