Skip to main content
WhatTermsWhatTerms
← Back to T-Mobile

Breach exposure

Public breaches involving T-Mobile

Cross-matched against the WhatTerms breach catalog. Each entry links the breach disclosure, names the data classes confirmed exposed, and matches each class to a concrete recovery action — not just “your email was leaked”.

Recovery actions

Sorted by severity. Each action maps to one or more data classes confirmed exposed across the breaches below.

  • File an identity-theft report with the FTC (US) or your national equivalent. Place a fraud alert.

    Critical

    Government IDs feed account-takeover and credit fraud.

  • Treat SMS 2FA on this number as compromised. Move to TOTP or hardware keys; consider a relay number.

    High

    Phone numbers feed SIM-swap attacks and SMS phishing.

  • Add the leaked address to your data-broker opt-out scope (DeleteMe / Optery / Kanary).

    High

    Addresses fuel doxxing and physical-world risk.

  • Treat DOB as a leaked secret on knowledge-based authentication. Switch any KBA-protected account to MFA.

    High

    DOB is a top-3 KBA factor and unrecoverable.

  • Switch this service to a per-service email alias and treat the leaked address as compromised.

    Medium

    Exposed emails feed phishing campaigns and credential-stuffing lists.

T-Mobile

Disclosed 2023-01-19 · 37.0M accounts

API exploitation; customer PII including DOB and government ID exposed.

Data classes exposed

  • Email address
  • Phone number
  • Home address
  • Date of birth
  • Government ID number

Source: T-Mobile SEC 8-K and customer notification. Read disclosure ↗