PLANT CITY, FL — Florida officials say a Plant City Police Department employee’s login credentials were used in a data breach involving the Florida Department of Highway Safety and Motor Vehicles. The agency said it learned of the incident on Sept. 4 and moved quickly to contain it.
FLHSMV said there is no ongoing breach. In a social media post, the department said an international cybercriminal organization was behind the incident and that its response began immediately after the problem was discovered.
Investigators traced the breach to one user account
According to FLHSMV, investigators determined that the criminals were able to exploit the credentials of a single Plant City police employee. The department said the login information had been improperly stored on a personal electronic device.
That finding narrowed the breach to one user account rather than a broad system failure, at least based on the information state officials have released so far. FLHSMV has not said what access the account provided or whether any records were copied.
Officials also did not identify the employee or say how long the credentials may have been exposed before the breach was detected.
State response included legal notice and law enforcement partners
After discovering the incident, FLHSMV said it immediately launched an investigation. State officials also said the agency gave the required breach notice to the Florida Attorney General’s Office under state law.
The department said it is working with the Florida Digital Service and the Florida Department of Law Enforcement as part of the response. Those agencies are helping review what happened and support the investigation.
FLHSMV said the matter remains under criminal investigation. Officials said more information will be released at a later time, but they have not given a timeline for that disclosure.
No word yet on exposed records or affected people
So far, FLHSMV has not released details on what information may have been accessed. Officials also have not said how many people could be affected by the breach, if any.
That leaves open key questions about whether the intrusion involved only limited account access or whether personal information tied to DMV systems may have been reached. The agency has only confirmed that the breach was contained and is no longer active.
For now, the state’s public explanation focuses on the compromised credentials, the rapid mitigation effort and the ongoing criminal probe.
What FLHSMV has said publicly so far
In its public statement, FLHSMV said the breach was first discovered on Sept. 4, 2026, and that the incident was quickly mitigated. The agency said no further breach has occurred and that nothing is currently ongoing.
The post also described the attacker as part of an international cybercriminal organization. Beyond that, officials have kept the public details limited while the investigation continues.
The department has indicated that it will release additional information at the appropriate time in the future, suggesting more specifics could come once investigators complete more of their work.
Why the breach matters for Florida residents
Even though officials say the incident is contained, breaches involving state motor vehicle agencies can raise concerns because these systems often handle sensitive personal and licensing information. FLHSMV has not confirmed whether any such data was accessed in this case.
The state’s response shows the standard steps taken after a suspected compromise: stop the intrusion, investigate the account involved, notify the proper authorities and coordinate with cybersecurity and law-enforcement partners.
For Florida residents, the biggest unanswered question is whether any personal information was exposed and whether anyone needs to take action. At this point, officials have not said that public notification to individual residents has begun.
From the Twin Cities to the border and back, Travel Your Way keeps Minnesota informed.
