Trump Mobile: BYOD group leaks 3,615 customer records (names, emails, phones, home addresses, orders) and claims ongoing dashboard access; company yet to comment
A group calling itself BYOD posted a file to a dark web leak site that it says came from Trump Mobile, the US mobile service owned by T1 Mobile under branding licensed from the Trump Organization. Straight Arrow News reported on 5 October 2026 that the file holds 3,615 records with names, email addresses, phone numbers, home addresses and order details; several people it contacted confirmed their details were accurate, while some denied being customers, so part of the set is corroborated but not every entry. The records include Trump Organization CIO Eric Brunnett. A BYOD representative told Straight Arrow the group got in by infecting an employee at Florida-based Liberty Mobile with malware, and claimed it still had access to Trump Mobile's backend dashboard, supplying a screenshot of customer data. The malware, infection method and access path have not been established, there is no confirmed evidence of encryption, and the report does not show passwords or payment card numbers were exposed. Trump Mobile had not responded to Straight Arrow when it published. Primary: Straight Arrow News; wire: Cybersecurity News (6 Oct). Switch primary if Trump Mobile or T1 Mobile issues a notice.
- Product
- Trump Mobile (T1 Mobile) customer and order data; claimed entry through a Liberty Mobile employee device
- Versions
- n/a — incident; no CVE or product flaw identified
- Exploited in Australia?
- no
- Patch to
- Telcos and resellers, including AU MVNOs: treat staff at partner and outsourced support firms as part of your attack surface. Require managed, monitored devices and phishing-resistant MFA for any partner login to customer dashboards, alert on bulk customer exports, and review partner session tokens when a partner reports malware. Affected customers should expect targeted phishing and verify any contact through official channels.
Primary: Straight Arrow News — Trump Mobile's latest problem: hackers just released customer information (5 Oct 2026) · Cybersecurity News — Hacker group claims to have stolen Trump Mobile customers' personal data (6 Oct 2026)
