FBI probes dark-web service Nexus selling 153 million stolen driver's licenses traced to IDScan.net
A dark-web marketplace called Nexus allegedly sold over 153 million U.S. and Canadian driver's license scans, including front/back images and home addresses. Cybersecurity journalist Brian Krebs traced the data to IDScan.net, a New Orleans-based identity verification vendor. The FBI's New Orleans field office is investigating. IDScan.net has not confirmed a breach but added a security incident contact prompt. Five proposed class actions were filed against the company within two days.
Editorial responsibility
- No named human review is recorded for this page.
- Reports are grouped by semantic similarity and deterministic rules. Language models may assist titles, summaries, translation and cross-source analysis; the page itself is projected from evidence records.
- Current automated evidence projection
Cross-source coverage
Common ground
- The current identity verification system is fundamentally broken because it relies on storing sensitive data like driver's license scans in centralized databases.
- IDScan.net was negligent by storing 153 million unencrypted scans without proper access auditing, which goes beyond typical industry practices.
- The lack of federal data security standards for identity verification data is a major policy failure that allows these breaches to happen.
- The FBI investigation is unlikely to lead to meaningful change, as it focuses on the symptom (the breach) rather than the root cause (the system's design).
- The only real long-term fix is to make it illegal to store raw identity scans, moving toward decentralized or cryptographic verification methods.
Points of contention
- Neutral Agent argues the root cause is a structural design problem in the verification industry, while Western Agent insists IDScan's specific negligence is the primary fault.
- Western Agent sees banks as victims who trusted a vendor, while Neutral Agent views banks as complicit because they demanded cheap, defensible verification over secure systems.
- Neutral Agent believes the regulatory vacuum is a deliberate choice lobbied for by banks and vendors, while Western Agent treats it more as an accidental policy gap.
Blind spots
- Both agents overlook the possibility that many other vendors may have been breached but stayed silent, since IDScan only got caught because the data appeared on a dark web marketplace.
- Neither fully addresses how economic incentives drive banks to prioritize audit trails for legal cover over actual security, which perpetuates the broken system.
- The debate doesn't explore practical alternatives to storing raw scans, like zero-knowledge proofs or cryptographic attestations, and how they could be implemented.
WorldAttention’s read
This debate shows that the 153 million driver's license breach is not just a single company's failure but a symptom of a broken system. IDScan.net was negligent by storing unencrypted scans without proper security, but the banks are also at fault for demanding cheap, defensible verification instead of secure methods. The lack of federal data security standards is a deliberate policy failure that allows this to keep happening. The FBI investigation will likely be a distraction, and the only real fix is to make it illegal to store raw identity scans, moving to decentralized or cryptographic verification. Until then, we'll keep blaming individual actors while the same structural problems persist.
Wire timeline
Bank ID vendor IDScan.net linked to dark web sale of 153 million license scans
Cybersecurity journalist Brian Krebs traced a dark web service called Nexus, which was selling over 153 million driver's license scans from the US and Canada, to IDScan.net, a New Orleans identity verification company. The illicit site went offline shortly after Krebs' report, replaced by a message saying the service was no longer available. The scans reportedly included infrared and ultraviolet images that banks use to authenticate IDs, raising serious security concerns for financial institutions. IDScan.net has not explicitly confirmed a breach but added a prompt on its contact page for those concerned about a security incident. The FBI's New Orleans field office confirmed it is investigating. Five proposed class actions were filed against IDScan.net in federal court in New Orleans within two days of the initial report. Jack Henry, an integration partner, said IDScan notified it that Jack Henry is not impacted, though it remains unclear whether the compromised licenses came from banks or credit unions.
Dark web sale of 153 million license scans traced to ID verification vendor IDScan.net
Cybersecurity journalist Brian Krebs reported that a dark web service called Nexus was selling over 153 million driver's license scans from the US and Canada, including infrared and ultraviolet images used by banks to authenticate IDs. Krebs traced the data to IDScan.net, a New Orleans-based identity verification company, by matching timestamps on licenses of friends and family against their travel records. The Nexus site went offline shortly after the report. The FBI's New Orleans field office confirmed it is investigating. IDScan.net has not explicitly confirmed a breach but added a prompt on its contact page for concerned individuals. The company markets its services to banks and credit unions, including through the Jack Henry Fintech Integration Network. Jack Henry, which disclosed a separate data breach attributed to ShinyHunters, said IDScan notified it that Jack Henry is not impacted. Five proposed class actions were filed against IDScan.net within two days of the initial report.
Dark web sale of 153M license scans traced to ID verification vendor IDScan.net
Cybersecurity journalist Brian Krebs traced a dark web service called Nexus, which claimed to sell over 153 million driver's license scans from the US and Canada, to IDScan.net, a New Orleans-based identity verification company. The illicit site went offline shortly after Krebs' report, replaced by a message stating the service was no longer available. The scans reportedly included infrared and ultraviolet images that banks use to authenticate licenses. IDScan.net, which markets its document authentication services to banks and credit unions, has not explicitly confirmed a breach but added a prompt on its contact page for those concerned about a security incident. The FBI's New Orleans field office confirmed it is investigating. Five proposed class actions were filed against IDScan.net in federal court in New Orleans within two days of the initial report. Jack Henry, an integration partner, said IDScan notified it that Jack Henry is not impacted. The incident is separate from a data breach Jack Henry disclosed this week attributed to the extortion group ShinyHunters.
Show 3 older updatesHide older updates
FBI Probes Report of Tens of Millions of Driver's Licenses Sold on Dark Web
The FBI is investigating a report that tens of millions of driver's licenses from the United States and Canada are being sold on the dark web. The investigation follows claims of a massive data breach involving personal identification documents. The scale of the reported breach, involving tens of millions of records, raises significant concerns about identity theft and national security. The dark web marketplace where the licenses are allegedly being sold is a focus of the probe. Authorities have not yet confirmed the exact number of compromised records or the source of the data. The investigation is ongoing, and no further details have been released at this time.
FBI probes dark-web service Nexus selling 153 million stolen driver's licenses
The FBI is investigating a dark-web service called Nexus that allegedly offered for sale more than 153 million stolen driver's licenses and identification documents from the United States and Canada. The investigation, reported by TechCrunch (TC), highlights a major data breach affecting millions of individuals across North America. The stolen documents include personal identification information, which could be used for identity theft and fraud. The scale of the breach, involving over 153 million records, makes it one of the largest known thefts of government-issued identification documents. The FBI's involvement indicates the severity of the cybercrime and the potential national security implications. The dark-web marketplace Nexus is believed to have operated clandestinely, selling the stolen data to criminals. Authorities are working to identify the perpetrators and mitigate the damage to affected individuals. The case underscores ongoing challenges in combating cybercrime and protecting sensitive personal data from illicit online markets.
Your profile doesn't protect you from this one. It may be why you're in it. A dark-web marketplace called Nexus is selling scans of 153+ million U.S. and Canadian driver's licenses (front and back, home
A dark-web marketplace called Nexus is reportedly selling scans of over 153 million U.S. and Canadian driver's licenses, including front and back images and home addresses. The data was allegedly pulled from a breach at an ID verification vendor used by rental car counters, hotels, casinos, and dispensaries. The post credits reporting by cybersecurity journalist Brian Krebs (KrebsOnSecurity) and includes an image from his blog. The post also promises tips for affected individuals in a follow-up thread. The scale of the breach, affecting more than 153 million individuals, makes it one of the largest known exposures of driver's license data, posing significant risks for identity theft and fraud.