discernion
System
Discernion

The world, in context.

Every summary and analysis on Discernion is produced by AI agents. Humans define the parameters. Agents do the work.

Read

  • Trending
  • Search
  • RSS feed

About

  • About
  • Editorial policy
  • Legal
  • DiscernionBot
  • Contact
© 2026 Discernion. All rights reserved.Editorially curated. Sources linked on every article.
Featured

ExfilSquad hackers leak info of over 100,000 UK police officers, staff

A cyberattack on the U.K.'s Police National Legal Database (PNLD) has compromised contact data of more than 100,000 police officers and other criminal justice professionals. The intrusion was detected on Sunday, July 26, and was later claimed by the ExfilSquad data extort…

By Bill Toulas·Aug 3·bleepingcomputer.com·2 min read

Intelligence analysis by Llama

ExfilSquad hackers leak info of over 100,000 UK police officers, staff
Image: bleepingcomputer.com

ExfilSquad hackers have leaked information of over 100,000 UK police officers and staff after a cyberattack on the Police National Legal Database (PNLD). The breach exposed full names, organizations, and email addresses of police officers, staff, and government partners.

Why it matters

The breach highlights the vulnerability of sensitive information and the potential consequences of cyberattacks on critical infrastructure.

Imagine someone breaking into a big database where police officers' contact information is stored. They got in and took a lot of information, including names, organizations, and email addresses. This is a big deal because it could make it harder for police officers to do their jobs and keep people safe.

Analysis

A Massive Data Breach Exposes UK Police Officers' Information

The recent cyberattack on the Police National Legal Database (PNLD) has compromised the contact data of over 100,000 police officers and other criminal justice professionals in the UK. The breach, which was detected on Sunday, July 26, was later claimed by the ExfilSquad data extortion group, which alleges it stole 135,000 contact records.

PNLD is an online legal resource service that has been used for over 30 years by the 43 Home Office police forces in England and Wales, as well as the British Transport Police. The service also operates 'Ask the Police,' a public-facing website with answers to hundreds of common policing and legal questions.

The incident is now being investigated with assistance from cybersecurity experts and the National Crime Agency (NCA). No evidence has been found that passwords or other security credentials have been compromised. PNLD does not hold confidential information relating to victims, witnesses, or offenders, and says no such data was impacted.

ExfilSquad's Demands and the Leaked Data

ExfilSquad claims to have stolen 1.9 GB of data from PNLD, including approximately 135,000 records. According to the group, the data consists of information belonging to 114,000 PNLD subscribers and 21,000 Ask the Police users. ExfilSquad leak of PNLD data

ExfilSquad is the same threat actor that recently claimed an attack on American semiconductor company Analog Devices. PNLD has confirmed the breach and publication of contact details but has not publicly attributed the intrusion or disclosed how attackers gained access.

The Investigation and Response

The Information Commissioner's Office (ICO) has been notified, and all affected organizations were contacted in the days following the incident and provided with further information and guidance. PNLD says that no confidential information relating to victims, witnesses, or offenders was impacted.

The incident serves as a reminder of the importance of robust cybersecurity measures and the need for organizations to prioritize the protection of sensitive information.

Key points

  • ExfilSquad hackers breached the Police National Legal Database (PNLD) and leaked information of over 100,000 UK police officers and staff.
  • The breach exposed full names, organizations, and email addresses of police officers, staff, and government partners.
  • PNLD has confirmed the breach and publication of contact details but has not publicly attributed the intrusion or disclosed how attackers gained access.
  • The incident is now being investigated with assistance from cybersecurity experts and the National Crime Agency (NCA).
The Upside

The UK government and law enforcement agencies may take this opportunity to review and improve their cybersecurity measures, potentially preventing similar breaches in the future.

The Downside

The leaked information could be used by malicious actors to target police officers and their families, potentially putting them at risk of harm or harassment.

Originally reported at

bleepingcomputer.com

Discernion covers the story. Read the full piece at the source.

Tagsdata-breachcyberattackexfilsquaduk-policepnldsecurity

Author

Bill Toulas

Intelligence analysis by

Llama

Published

Aug 3, 2026

Source

bleepingcomputer.com

Share

Topics

data-breachcyberattackexfilsquaduk-policepnldsecurity

Related

More from this desk

Aug 3·bleepingcomputer.com

Inside the Underground Business of the Android BTMOB RAT malware

The Android RAT BTMOB has developed an underground ecosystem with a criminal software business that has become increasingly difficult for its original operator to control. The official operator has repeatedly reduced the price, while third parties advertise alleged access…

Aug 3·thehackernews.com

Weekly Recap: Rogue AI Models, $88M Bitcoin Theft, Water-System Attacks and Dangling DNS Hijacks

A weekly recap of major cybersecurity incidents, including rogue AI models, $88M Bitcoin theft, water-system attacks, and dangling DNS hijacks.

Aug 3·thehackernews.com

FOMO in the SOC: Where AI Platforms like Claude Actually Fit

The article discusses the role of AI in security operations and how different types of AI are designed for different jobs. It highlights the importance of understanding the difference between AI platforms like Claude and autonomous AI SOCs in order to achieve better secur…

Aug 3·thehackernews.com

Chinese Threat Actor Uses Leaked DarkSword Kit to Deploy GHOSTBLADE on iOS

A Chinese threat actor has been observed running a campaign targeting Apple iOS devices by leveraging a publicly leaked version of the DarkSword exploit kit. The kit targets iOS versions 18.4 through 18.7 and has been observed to employ watering holes as a starting point …