A new data breach has hit AT&T customers hard, with hackers releasing personal information from 86 million customer accounts.

The leaked information includes over 43 million Social Security Numbers that have been fully decrypted and exposed in plain text.
Never worry about a data breach again by using Aura which is TROYPOINT’s recommended identity theft protection!
Aura – Best Identity Theft Protection at a Low Price
Major Settlement News: $177 Million Payout Available
AT&T customers affected by recent data breaches can now claim up to $7,500 in cash payments from a massive class-action settlement.
The telecommunications company agreed to pay $177 million to resolve lawsuits from two major 2024 breaches.
The settlement includes $149 million for the March 2024 breach and $28 million for the July 2024 breach. Affected customers have until November 18, 2025 to file claims.
How to Claim Your Settlement Money
For the 2019/March 2024 breach: Customers can claim up to $5,000 for documented losses or join the class-action payout with two tiers based on data exposure.
Hide Your Digital Fingerprint
For the July 2024 breach: Claims reach up to $2,500 for documented losses or equal shares from remaining funds.
Affected by both breaches? You could receive the maximum $7,500 payout.
Check your email for notifications from Kroll Settlement Administration or visit telecomdatasettlement.com to file claims. Use the class member ID from your notification email.
What AT&T Customer Information Was Leaked?
The leaked dataset contained 86,017,090 unique entries out of a total of 88,320,018 records. The exposed information includes:
- Full names
- Dates of birth
- Phone numbers
- Email addresses
- Physical addresses
- Social Security Numbers (43,989,219 total)
A critical aspect is that the SSNs and dates of birth, which were originally encrypted, have now been fully decrypted and exposed in plain text. This makes the breach far more dangerous for identity theft.
Timeline of the Breach
The data was first posted on a well-known Russian cybercrime forum on May 15, 2025. It was re-uploaded on the same forum on June 3, 2025, after which it began circulating among other hackers and forums.

The hackers claim this data comes from the ShinyHunters group’s April 2024 attack on AT&T’s Snowflake cloud environment. However, experts aren’t certain if this is the same breach or a different incident.
AT&T’s History of Data Breaches
This isn’t AT&T’s first major breach. The company has experienced several incidents:
- April 2024: Snowflake breach affecting 110 million customers’ call and text metadata
- August 2021: ShinyHunters claimed to have 70 million customer records
- March 2024: Company acknowledged the 2021 breach affected 73 million customers
AT&T paid a ransom of approximately $370,000 in Bitcoin to have the stolen data deleted, a transaction facilitated through an intermediary known as Reddington.
What Makes This Breach Different
Previous breaches typically included encrypted Social Security Numbers. This new leak contains decrypted SSNs, making the information much more valuable to criminals.
Exclusive Surfshark Discount
Your online activity is currently monitored by your ISP, app/addon/IPTV developers, government agencies, and the websites you visit.
- Become 100% anonymous while streaming and downloading.
- Use on Unlimited Devices & share 1 account with the entire family.
- Save 85% with the 24-Month Plan + Get 3 FREE Months.
Cybersecurity experts warn that the combination of decrypted Social Security numbers with complete personal profiles creates an unprecedented risk for identity theft and financial fraud.

AT&T’s Response
AT&T responded to the news source (Hackread) with the following statement:
“It is not uncommon for cybercriminals to re-package previously disclosed data for financial gain. We just learned about claims that AT&T data is being made available for sale on dark web forums, and we are conducting a full investigation.”
AT&T has not yet issued an official statement confirming or addressing this latest data leak, leaving customers without clear guidance.
Final Thoughts
This breach shows how previous “secure” encrypted data can become dangerous when criminals find ways to decrypt it. AT&T customers should monitor their credit reports closely and consider freezing their credit if they haven’t already.
The combination of full names, addresses, birth dates, and Social Security Numbers gives criminals everything they need for identity theft.
We’ve reported on similar data breaches at Blue Shield, Hertz, and others. We don’t expect hackers to slow down anytime soon…
For more information on this story refer to the report from Hackread and also the court documentation (PDF) for settlement details.
We want to know your thoughts. What do you think about this story? Let us know in the comment section below!
Be sure to stay up-to-date with the latest streaming news, reviews, tips, and more by following the TROYPOINT Advisor with updates weekly.
Never worry about a data breach again by using Aura which is TROYPOINT’s recommended identity theft protection!
Aura – Best Identity Theft Protection at a Low Price
This page includes affiliate links where TROYPOINT may receive a commission at no extra cost to you. Many times, visitors will receive a discount due to the special arrangements made for our fans. Learn more on my Affiliate Disclaimer page.




