Frontier Communications detected unauthorised access in April 2024 and shut down parts of its environment in response. It subsequently notified close to 752,000 people that their information had been taken, including names and social security numbers.
The RansomHub operation claimed the attack and said the material covered more than two million customers, listing names, addresses, dates of birth, telephone numbers, email addresses, social security numbers and credit scores.
Two Figures, One From Each Side
The company notified 750,000. The operation claimed two million. Neither number can be checked from outside, and they are answering different questions: one is who the company could identify and had a duty to write to, the other is what the operation says it holds.
We report both and adopt neither. A notification count is a floor, not a total — it covers the people an organisation could name from what it could reconstruct.
Credit Scores Are An Unusual Field To Lose
The claimed set includes credit scores, which a telecommunications company holds because it ran an affordability check at sign-up.
That is a byproduct of a single decision years earlier, retained afterwards. A social security number paired with a credit score is materially more useful for impersonation than either alone.
Compiled from the company’s notifications and public reporting, listed below. The two million figure and the field list are RansomHub’s claims, not the company’s. Corrections: corrections@forensicpost.com.