Hackers: We Stole Data From 3,615 Trump Mobile Customers | #hacking | #cybersecurity | #infosec | #comptia | #pentest | #hacker
A new hacking group claims to have stolen data on over 3,000 Trump Mobile customers by infecting an employee at a related company with malware.
Straight Arrow News first reported on the alleged hack, for which a group called BYOD has claimed responsibility. Last week, the gang’s site on the dark web published a file claiming to contain the personal data of 3,615 customers. “Trump Mobile was informed they had been breached, they then replied with ‘We have no team to handle this’ and that anyone who hacks them [is] a terrorist,” BYOD alleged on their website.
There are signs that the breach is real. Three people in the leaked file confirmed to PCMag that they had interacted with Trump Mobile in the past. We were able to reach out to them because the leaked file contained their name, phone number, email address, and physical address. One customer was also surprised that the leaked file accurately showed they had canceled their Trump Mobile service for the “30 Day Unlimited Talk Text Data” plan.
(Credit: BYOD)
BYOD told PCMag that they “ratted a Liberty Mobile employee,” a Florida-based MVNO known to power Trump Mobile. Ratting refers to installing a Remote Access Trojan on the target’s device, creating a way for a hacker to remotely hijack their computer.
The infection gave the cybercrime gang “no permissions except to look up prepaid numbers, so we pivoted to subdomains, which Trump Mobile was exposed, and decided to exfil that,” BYOD said in an email. “We only stole 3,615 customers due to the fact that’s all they have using their MVNO (different from the prepaid phone orders, these are people using the carrier),” BYOD added. The group also says it has “live access to the dashboard,” apparently TrumpMobile.com.
The gang says the stolen data shows “people who are currently or were previously using the MVNO as their cellular network.” But one affected customer told us she never successfully signed up for Trump Mobile or for a preorder for the long-delayed Trump-branded phone, even though her information appears to be in the file.
“They wouldn’t sell me the phone because my email was already in their system,” the customer said, who added that Trump Mobile’s customer service “sucked.” Still, she did give the company her email address and phone number, which would explain how her information ended up in BYOD’s leaked file. A Trump Mobile customer support rep also called her using the same number.
Recommended by Our Editors
So far, neither Trump Mobile nor Liberty Mobile has responded to a request for comment. But it’s not the first time Trump Mobile has faced a security issue. In May, two YouTubers sounded the alarm about an exploitable software flaw on TrumpMobile.com that could be used to leak customer information, including names, phone numbers, and physical addresses. Trump Mobile later fixed the issue, saying it found no evidence its systems were ever compromised.
Still, there’s some speculation that BYOD —which has only been active for a week— may have stolen the data using the same exploit. Last month, another hacking group, Endzone, claimed to have stolen data from 4,000 Trump Mobile users.
In response, a rep for BYOD said: “No, we have no affiliation; a member from our group just knows a few people behind Endzone, so there could’ve been a hiccup regarding Trump Mobile & Eteam, although we have published both first… However, we wish them the best, of course.”
About Our Expert
Michael Kan
Principal Reporter
Experience
I’ve been a journalist for over 15 years. I got my start as a schools and cities reporter in Kansas City and joined PCMag in 2017, where I cover satellite internet services, cybersecurity, PC hardware, and more. I’m currently based in San Francisco, but previously spent over five years in China, covering the country’s technology sector.
Since 2020, I’ve covered the launch and explosive growth of SpaceX’s Starlink satellite internet service, writing 600+ stories on availability and feature launches, but also the regulatory battles over the expansion of satellite constellations, fights with rival providers like AST SpaceMobile and Amazon, and the effort to expand into satellite-based mobile service. I’ve combed through FCC filings for the latest news and driven to remote corners of California to test Starlink’s cellular service.
I also cover cyber threats, from ransomware gangs to the emergence of AI-based malware. In 2024 and 2025, the FTC forced Avast to pay consumers $16.5 million for secretly harvesting and selling their personal information to third-party clients, as revealed in my joint investigation with Motherboard.
I also cover the PC graphics card market. Pandemic-era shortages led me to camp out in front of a Best Buy to get an RTX 3000. I’m now following how the AI-driven memory shortage is impacting the entire consumer electronics market. I’m always eager to learn more, so please jump in the comments with feedback and send me tips.
Read Full Bio

