TALLAHASSEE, FL — Florida’s Department of Highway Safety and Motor Vehicles says an international cybercriminal group got into a state driver-record database by using compromised credentials tied to a Plant City Police Department user. The agency said it learned about the breach on Sept. 4 and moved quickly to contain it, adding that there is no ongoing intrusion.
The database at the center of the incident is known as DAVID, short for the Driver and Vehicle Information Database. It is used by law enforcement and other authorized government agencies to access driver and vehicle records, making it a sensitive repository for state information.
How investigators say the breach happened
According to the state, the user’s login information had been stored improperly on a personal electronic device before it was compromised. That allowed unauthorized access into the system and, ultimately, the breach of the driver-record database.
The department has not said who compromised the credentials or exactly how the personal device was exposed. It also has not identified the cybercriminal group beyond describing it as an international organization.
Officials said the breach was contained after discovery, and they have stressed that there is no active unauthorized access now. The state’s description suggests the incident was limited in scope once authorities intervened, though the investigation is still open.
What Florida officials have and have not confirmed
Florida officials have not said how many records may have been accessed. They also have not specified what information could have been exposed, leaving open questions about the possible impact on drivers whose information may have been in the system.
The department has also not said whether affected drivers will be notified. That means Floridians who rely on state driver records are still waiting for clarity on whether their personal information was involved.
What the agency has confirmed is that it is not treating the incident as ongoing. Officials said they identified the breach, contained it and continued reviewing what happened and what data may have been touched.
ShinyHunters claims far more data than Florida has confirmed
A cybercriminal group calling itself ShinyHunters has claimed responsibility for stealing more than 200,000 Florida driver records. State officials, however, have not confirmed that figure.
Because the number has not been verified by the Department of Highway Safety and Motor Vehicles, it remains a claim rather than an established fact. The state has only said that an investigation is underway and that additional details will be released later.
The gap between the claimed theft and the state’s confirmed findings is one of the biggest unanswered questions in the case. For now, Florida has publicly acknowledged the breach and the compromised credentials, but not the size of any data loss.
State agencies are coordinating the criminal investigation
Officials said they notified the Florida Attorney General’s Office and are working with the Florida Digital Service and the Florida Department of Law Enforcement. Those agencies are helping as the criminal investigation continues.
That coordination signals that the state is handling the incident as both a cybersecurity matter and a criminal case. It also suggests investigators are tracing how the credentials were stored, how access was gained and what was done inside the system.
The department said, “Further information will be released at an appropriate time in the future.” For now, the investigation remains active and the state has limited what it has made public.
Why the DAVID system matters for Florida drivers
DAVID is not an ordinary consumer database. Because it is used by law enforcement and authorized government agencies, the system contains records that can support official work tied to drivers and vehicles across the state.
That makes the breach especially significant even without a confirmed record count. A compromise of credentials linked to a police user raises concerns about how sensitive access is protected, especially when login information is stored on a personal device.
Florida has not said how the incident will affect public access to services or what steps it may take to tighten security. The state’s immediate focus, based on its public statements, is containing the breach and determining the full extent of exposure.
From the Twin Cities to the border and back, Travel Your Way keeps Minnesota informed.
