Personal Information for Over 1 Million People Stolen in a Cyberattack on Arizona’s Court System
Description
A cyberattack on the Arizona Supreme Court system resulted in the theft of personal information for approximately 1.3 million people, including data related to unpaid court fees, fines, and restitution payments dating back 30 years. Additionally, records of nearly 30,000 orders of protection and 150,000 foster care reports from 2010 onward were stolen. The breach began when a court employee clicked a malicious email link. The attack was detected and stopped within two hours, with no evidence of data misuse or sharing. No court cases were affected or delayed, and no records were altered or deleted. Information about jurors, witnesses, or court employees was not compromised.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The Arizona Supreme Court experienced a cyberattack initiated by a malicious email link clicked by an employee, leading to unauthorized copying of personal information for over 1.3 million individuals. The stolen data includes unpaid court-related financial records spanning 30 years, orders of protection, and foster care board reports dating back to 2010. The court's technology team detected and halted the attack on a backup server within two hours. There is no evidence that the stolen data has been used or shared. The breach did not impact court operations or result in data alteration or deletion.
Potential Impact
Personal data of over 1.3 million individuals was exfiltrated, including sensitive court financial records, protection orders, and foster care reports. Although the breach involved a large volume of sensitive information, there is no current evidence of misuse or dissemination of the stolen data. Court operations remained unaffected, and no data integrity issues were reported.
Defensive Guidance
The Arizona Supreme Court promptly detected and stopped the attack within two hours. Affected individuals have been notified. There is no indication that the stolen information has been exploited. Continued investigation is underway. Organizations should maintain vigilance against phishing attacks, particularly those involving malicious email links, to prevent similar incidents.
Technical Details
- Classification
- {"confidence":0.75,"severitySource":"default","classifier":"rss-v2"}
- Article Source
- {"url":"https://www.securityweek.com/personal-information-for-over-1-million-people-stolen-in-a-cyberattack-on-arizonas-court-system/","fetched":true,"fetchedAt":"2026-10-07T01:33:20.192Z","wordCount":904}
Threat ID: 6ac5a1602cdf04f656fead91
Added to database: 10/07/2026, 01:33:20 UTC
Last enriched: 10/07/2026, 01:33:24 UTC
Last updated: 10/07/2026, 03:48:20 UTC
Views: 6
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.