A US defense official said unauthorized users accessed a Defense Manpower Data Center (DMDC) information system from October 2025 through July 2026. The department said it fixed the vulnerability immediately after discovering it. A small number of unauthorized users were involved.

The exposed files contained personally identifiable information, including Social Security numbers and details about jobs held by military and civilian personnel. The scale and sensitivity of the information could raise national security concerns. DMDC is one of the Pentagon’s main personnel repositories, with records on active-duty and reserve service members, civilian employees, contractors, retirees, veterans and military families.

The center maintains more than 60 million personnel records. Defense officials said they have found no evidence that the exposed information has been misused and are offering identity-protection and credit-monitoring resources to those affected. Military Times first reported the breach.

Separately, ABC News reports that the FBI notified employees on Friday about its response to a breach of the FBIJobs.gov hiring portal. Sources told ABC that a threat actor said it would publish FBI employees’ names, home addresses, personal and work contact details, Social Security numbers, dates of birth and emergency contacts. The bureau is acting as if every employee’s personal information may have been compromised, and notifications to affected workers have begun.

The FBI said FBIJobs.gov was an unclassified system. It advised potentially affected employees to stay alert and avoid suspicious calls, and plans internal briefings. According to a warning described to ABC News, employees were also told not to speak to the media and to call 911 if reporters were trespassing.