Breach - Pdl Customer

The breach is likely to draw scrutiny from state attorneys general and federal regulators, particularly given PDL’s role as a data processor for other businesses. Class-action lawsuits have already been filed in the Northern District of California, alleging negligence and violation of data protection laws.

According to a statement released by PDL’s security team on April 13, an unauthorized third party gained access to a legacy customer database using compromised administrative credentials. The company first detected unusual activity on April 10, but a forensic investigation later revealed that the attacker had maintained access for approximately two weeks.

April 14, 2026

Additionally, PDL has reset passwords for all affected user accounts and is enforcing multi-factor authentication (MFA) for any account that accesses its data brokerage portal going forward.

National

This story is developing. PDL has promised a full public report within 45 days. We will update as more information becomes available.

PDL, a prominent data brokerage and identity verification service, has confirmed a significant customer data breach after a threat actor leaked a portion of its internal database on a cybercrime forum over the weekend. pdl customer breach

PDL Confirms Customer Data Breach: Sensitive Information Exposed