logo

Drug-screening biz DISA took a year to disclose security breach affecting millions

ID: c53e72bf-03c6-55b0-9cf4-54eead0a0348

STIX ID: report--c53e72bf-03c6-55b0-9cf4-54eead0a0348

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2025-02-26

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

DISA Global Solutions disclosed a cybersecurity incident in which attackers stole sensitive records for more than 3.3 million people in February 2024, with the intrusion discovered in April; compromised data may include names, Social Security numbers, government IDs, financial account information, and drug testing/background-check details. The filing and notices suggest the incident could enable extortion of individuals or the company, and observers note the response (deleted files, prevented leaks) is consistent with a ransomware-related intrusion, though ransom payment and full remediation details were not confirmed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.