Over 100,000 UK police officers and staff have had their personal contact information compromised in a cyberattack on the Police National Legal Database (PNLD), an online legal resource service used by law enforcement agencies across England and Wales.
The breach, which was claimed by the ExfilSquad data extortion group, exposed the full names, organizations, and email addresses of police officers, staff, criminal justice professionals, and government partners who use PNLD. Additionally, users of “Ask the Police,” a public-facing website with answers to common policing and legal questions, also had their names and email addresses compromised if they submitted a question through the platform.
PNLD is an online database that has been in operation for over 30 years, providing access to a vast array of legal information and resources to law enforcement agencies. The database contains sensitive information about police officers and staff, including their contact details. The fact that this information was compromised raises serious concerns about the security of PNLD’s systems.
According to ExfilSquad, the group stole 135,000 records from PNLD, which includes approximately 114,000 subscriber records and 21,000 Ask the Police user records. The group claimed responsibility for the attack on July 26, publishing sample data to support its claims and demanding a ransom in exchange for not releasing the remaining stolen data.
While ExfilSquad has been linked to other high-profile cyberattacks in recent months, including an attack on American semiconductor company Analog Devices, PNLD has refused to disclose how the attackers gained access to their systems. The incident is currently being investigated by cybersecurity experts and the National Crime Agency (NCA), with no evidence suggesting that passwords or other security credentials were compromised.
The breach highlights the vulnerability of even the most seemingly secure databases to cyberattacks. As we become increasingly reliant on digital systems to store sensitive information, it’s essential that organizations take proactive steps to protect their data from unauthorized access. This includes implementing robust cybersecurity measures, conducting regular penetration testing and vulnerability assessments, and training employees on how to identify and report suspicious activity.
For individuals whose personal contact information has been compromised in this breach, it’s essential to remain vigilant about potential phishing attacks or other types of malicious activity that may be directed towards them. By staying informed and taking steps to protect their online security, individuals can reduce the risk of falling victim to cybercrime.
Ultimately, this breach serves as a reminder that no organization is immune to cyberattacks, and it’s essential for all organizations to prioritize cybersecurity and take proactive measures to prevent such incidents from occurring in the first place.
Source: Bleeping Computer — 2026-08-03