Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Incidents

DHS Data Hub Leaked Sensitive Intel

September 17, 2025
Reading Time: 3 mins read
in Incidents
DHS Data Hub Leaked Sensitive Intel

A recent data leak at the Department of Homeland Security (DHS) has raised new concerns about the agency’s handling of sensitive information. The leak, which occurred on an intelligence-sharing platform used by DHS, left national security data—including intelligence on the surveillance of Americans—exposed to thousands of unauthorized users. Since its creation, the DHS has faced scrutiny from privacy advocates for its domestic surveillance programs, and this incident sheds light on not just how the department gathers and stores this data, but how it once left it exposed to a wide range of individuals who were never meant to see it.

An internal DHS memo, obtained through a Freedom of Information Act (FOIA) request, reveals the details of the incident. From March to May of 2023, a platform managed by the DHS Office of Intelligence and Analysis (I&A) was misconfigured. This platform, which is designed to share sensitive but unclassified intelligence with various partners like the FBI, local law enforcement, and intelligence fusion centers, was set to grant access to “everyone” instead of the intended limited group of users on the Homeland Security Information Network’s intelligence section (HSIN-Intel). As a result, tens of thousands of users gained access to restricted intelligence.

The unauthorized users who had access included US government employees in fields unrelated to intelligence or law enforcement, such as disaster response. The data was also exposed to private-sector contractors and foreign government staff who had access to HSIN for other purposes. According to Spencer Reynolds, an attorney for the Brennan Center for Justice who obtained the memo, this incident raises serious questions about the DHS’s commitment to information security, especially since the department advertises the platform as secure for critical national security information.

The exposed data included a wide range of sensitive materials, from law enforcement leads and reports on foreign hacking to analysis of domestic protest movements. For example, the memo specifically mentioned a report on protests related to a police training facility in Atlanta—likely the “Stop Cop City” protests—which focused on media praising illegal actions against the police. The incident demonstrated the broad scope of information the platform holds and the potential risks when it is not properly secured.

Ultimately, the DHS inquiry found that 439 I&A “products” were improperly accessed 1,525 times. Of those instances, 518 were by private-sector users and 46 by non-US citizens, primarily focused on cybersecurity information. The DHS spokesperson stated that the coding error was immediately fixed and that an extensive review determined there was “no impactful or serious security breach.” However, the incident highlights ongoing concerns about the protection of sensitive national security information and the breadth of access granted to individuals outside of core intelligence functions.

Reference:

  • DHS Data Hub Exposed Sensitive Intelligence to Thousands Without Authorization
Tags: cyber incidentsCyber Incidents 2025Cyber threatsSeptember 2025
ADVERTISEMENT

Related Posts

F5 Reports Hackers Stole Source Code

October 16, 2025

YouTube Down Globally With Playback Errors

October 16, 2025

Spanish Retailer Mango Discloses Breach

October 16, 2025
Unencrypted Satellites Expose Data

Unencrypted Satellites Expose Data

October 15, 2025
Unencrypted Satellites Expose Data

Microsoft Investigates 365 App Outage

October 15, 2025
Unencrypted Satellites Expose Data

Sonicwall VPN Accounts Breached

October 15, 2025

Latest Alerts

Fortinet And Ivanti Patch Severe Flaws

Malicious VSCode Extensions Steal Crypto

Fake Password Manager Hijack PCs

Android Flaw Lets Apps Steal 2FA Codes

New Sap Netweaver Bug Enables Takeover

Two New Windows Zero Days Exploited

Subscribe to our newsletter

    Latest Incidents

    F5 Reports Hackers Stole Source Code

    YouTube Down Globally With Playback Errors

    Spanish Retailer Mango Discloses Breach

    Unencrypted Satellites Expose Data

    Sonicwall VPN Accounts Breached

    Microsoft Investigates 365 App Outage

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial