Trump Mobile data leak exposes 27,000 customer records via website flaw
A security researcher discovered a vulnerability in the Trump Mobile website that exposed personal data—including names, addresses, phone numbers, and order details—of over 27,000 customers, primarily preorder buyers of the T1 smartphone. The flaw allowed anyone to access records by cycling through sequential order IDs. Trump Mobile confirmed the leak, attributing it to a third-party platform, and stated no financial data was compromised. The company has not decided whether to notify affected customers. The incident follows repeated shipping delays and scrutiny of the T1 phone, a rebranded HTC U24 Pro.
Cross-source coverage
Wire timeline
Trump Mobile investigates data leak exposing thousands of T1 preorder customers
Trump Mobile, the cellular company launched by the Trump family, is investigating a data leak that exposed the personal information of approximately 27,000 prospective buyers of its T1 smartphone. The flaw, discovered by security researchers, involved poorly secured order pages using sequential order numbers, allowing anyone to cycle through order IDs and access customer names, phone numbers, email addresses, shipping addresses, and order numbers. The company confirmed that financial data, Social Security numbers, call logs, and text messages were not compromised. The issue stems from a website code flaw rather than a direct breach of internal systems. Trump Mobile has added extra monitoring and safeguards and is warning customers about potential phishing attempts. The incident comes as the long-delayed T1 smartphone finally begins shipping, raising concerns about customer trust in the new telecom brand.
Android AuthorityTrump Mobile Investigates Customer Data Leak After Preorder Information Exposed Online
Trump Mobile is investigating a potential customer data exposure after names, addresses, phone numbers, and preorder details for its T1 smartphone were reportedly left accessible online. The vulnerability was linked to a third-party platform provider and was first flagged by independent researchers, later amplified by YouTubers including Coffeezilla and penguinz0, who verified their own leaked information. Trump Mobile stated that no financial data, Social Security numbers, passwords, or communication records were compromised. The incident adds to a series of challenges for the company, including delays, criticism over its 'Made in America' claims, skepticism about preorder numbers, and scrutiny of the phone's design, which some say is a repackaged HTC U24 Pro. The Trump Organization has not yet responded to requests for comment.
Digital TrendsTrump Mobile confirms customer data exposure on its website
Trump Mobile has confirmed to TechCrunch that it exposed customer personal information, including names, phone numbers, home addresses, and email addresses, on its website. The company is investigating the exposure, which was linked to a third-party platform provider supporting certain Trump Mobile operations. Trump Mobile spokesperson Chris Walker stated there was no breach of the company's network or systems, as the data was publicly accessible on the website. The company has not yet decided whether to notify affected customers. This incident adds to ongoing issues for Trump Mobile, whose first smartphone (a rebranded HTC U24 Pro) has faced repeated shipping delays since its planned launch in August/September 2025.
GSMArena.com - Latest articlesTrump Mobile confirms data leak, undecided on customer notification
Trump Mobile has confirmed that customer data, including email addresses, mailing addresses, and phone numbers, was exposed through public-facing webpages. The company attributed the leak to an unspecified third-party platform used in its operations. A spokesperson stated that no Trump Mobile systems were breached and no financial information was compromised. However, the company is still evaluating whether it will notify affected customers. The revelation came shortly after media outlets obtained the Trump Phone, a rebranded HTC U24 Pro, and YouTuber Coffeezilla reported the data exposure. The phone is priced at $499 and marketed as assembled in the US.
Android AuthorityTrump Mobile website vulnerability exposed thousands of customer records
A self-described tech tinkerer named Louis discovered a serious security flaw in the Trump Mobile website that exposed the personal data of over 27,000 customers. The vulnerability allowed anyone to retrieve customer information—including names, addresses, email addresses, phone numbers, and order details—by sending a simple HTTP POST request. Louis found the flaw by examining API endpoints and was able to access approximately 5,000 customer records within an hour by iterating through customer numbers. After his attempts to disclose the issue to Trump Mobile went unanswered, he went public by informing YouTube creators Coffeezilla and penguinz0, whose videos on the breach have garnered millions of views. The vulnerability has since been fixed. The news comes as Trump Mobile's flagship T1 smartphone, a rebranded HTC U-24 Pro, began shipping to pre-order customers this week.
www.theregister.com - Articles