Data Breach Compromises Tens of Thousands of Travelers’ Images, License Plates

Data Breach Compromises Tens of Thousands of Travelers' Images, License Plates

A subcontractor of U.S. Customs & Border Protection transferred images of travelers and license plates to its network without CBP’s authorization or knowledge. He was subsequently hacked, and the information was compromised.

U.S. Customs & Border Protection (CBP) has announced a data breach has compromised tens of thousands of traveler’s information. According to the agency, a subcontractor transferred the images to its network “in violation of CBP policies and without CBP’s authorization or knowledge.” The subcontractor was subsequently hacked.

A CBP spokesperson said that the images contain fewer than 100,000 people in vehicles entering and exiting the United States “through a few specific lanes a single land border Port of Entry over a 1.5-month period.” The photos include drivers in their cars and the license plates of vehicles. No photos were obtained from any airport. Officials have also stated that no passport or other travel document photos were compromised. CBP said none of the image data had been identified on the dark web or internet as of Monday.

Dan Tuchler, CMO at SecurityFirst, said that the misuse of facial recognition technology as well as license plate tracking software is currently a contentious topic, and this breach only breeds more ground for the matter to be discussed.

“We don’t want to live in a police state,” Tuchler said. “With the theft of photos of people entering or exiting the country, will hackers use these photos in combination with other data to create problems for citizens and travelers? Once again it is a partner that was hacked. Every responsible organization needs to be vigilant and ensure that their partners are securing vital data.”

Interestingly enough, this breach occurred just as airlines and U.S. authorities are beginning to use facial recognition technology for customs, check-in, baggage drop, security, and boarding. In lieu of the breach, more opposition to the facial recognition technology may arise.

John Gunn, CMO of OneSpan, said that biometric technology is not inherently bad, but must be applied correctly to keep the misuse to a minimum.

“Biometric technology is too often misrepresented by the media and certain fanatics as a Big-Brother conspiracy,” Gunn said. “It is not a panacea; it is a developing technology that is imperfect and has weaknesses and vulnerabilities like every technological advance in our history, but the net sum gain of its use is indisputably positive.”

CBP said in a statement that the equipment involved in the breach has been removed, and Congress has been informed. While there is speculation, there is still no clear answer on which subcontractor was involved in the breach.

About the Author

Kaitlyn DeHaven is the Associate Content Editor for the Infrastructure Solutions Group at 1105 Media.

Featured

  • Security Industry Association Announces the 2026 Security Megatrends

    The Security Industry Association (SIA) has identified and forecasted the 2026 Security Megatrends, which form the basis of SIA’s signature annual Security Megatrends report defining the top 10 factors influencing both near- and long-term change in the global security industry. Read Now

  • The Future of Access Control: Cloud-Based Solutions for Safer Workplaces

    Access controls have revolutionized the way we protect our people, assets and operations. Gone are the days of cumbersome keychains and the security liabilities they introduced, but it’s a mistake to think that their evolution has reached its peak. Read Now

  • A Look at AI

    Large language models (LLMs) have taken the world by storm. Within months of OpenAI launching its AI chatbot, ChatGPT, it amassed more than 100 million users, making it the fastest-growing consumer application in history. Read Now

  • First, Do No Harm: Responsibly Applying Artificial Intelligence

    It was 2022 when early LLMs (Large Language Models) brought the term “AI” into mainstream public consciousness and since then, we’ve seen security corporations and integrators attempt to develop their solutions and sales pitches around the biggest tech boom of the 21st century. However, not all “artificial intelligence” is equally suitable for security applications, and it’s essential for end users to remain vigilant in understanding how their solutions are utilizing AI. Read Now

  • Improve Incident Response With Intelligent Cloud Video Surveillance

    Video surveillance is a vital part of business security, helping institutions protect against everyday threats for increased employee, customer, and student safety. However, many outdated surveillance solutions lack the ability to offer immediate insights into critical incidents. This slows down investigations and limits how effectively teams can respond to situations, creating greater risks for the organization. Read Now

New Products

  • 4K Video Decoder

    3xLOGIC’s VH-DECODER-4K is perfect for use in organizations of all sizes in diverse vertical sectors such as retail, leisure and hospitality, education and commercial premises.

  • Luma x20

    Luma x20

    Snap One has announced its popular Luma x20 family of surveillance products now offers even greater security and privacy for home and business owners across the globe by giving them full control over integrators’ system access to view live and recorded video. According to Snap One Product Manager Derek Webb, the new “customer handoff” feature provides enhanced user control after initial installation, allowing the owners to have total privacy while also making it easy to reinstate integrator access when maintenance or assistance is required. This new feature is now available to all Luma x20 users globally. “The Luma x20 family of surveillance solutions provides excellent image and audio capture, and with the new customer handoff feature, it now offers absolute privacy for camera feeds and recordings,” Webb said. “With notifications and integrator access controlled through the powerful OvrC remote system management platform, it’s easy for integrators to give their clients full control of their footage and then to get temporary access from the client for any troubleshooting needs.”

  • AC Nio

    AC Nio

    Aiphone, a leading international manufacturer of intercom, access control, and emergency communication products, has introduced the AC Nio, its access control management software, an important addition to its new line of access control solutions.