Drooid Logo
Back to story perspectives

Full Breakdown

Massive PNLD Breach Puts Over 100,000 UK Police Officers’ Details on the Dark Web

8/6/2026, 7:49:45 AM

Core Event: Unauthorized Access to the Police National Legal Database

On July 26 the Police National Legal Database (PNLD) detected a cyber intrusion that led to the publication of officers’ names, organisational affiliations and work email addresses on the dark web. The breach also exposed similar contact details for criminal-justice staff, government partners and users of the public “Ask the Police” service.

Background & Context: A Wave of Public-Sector Hacks

The PNLD incident follows recent compromises of UK government systems, including the Department for Education breach that released more than 600,000 records. Both incidents have been linked to the extortion group ExfilSquad, which claims to have stolen a 1.9 GB data set containing roughly 135,000 law-enforcement contact records. PNLD has not formally attributed the attack to ExfilSquad.

Data & Statistics: Scope of the Compromise

  • 114,000 PNLD subscriber records reported by the North East Regional Organised Crime Unit.
  • 21,000 email addresses of members of the public who used “Ask the Police.”
  • The stolen file is described as 1.9 GB with about 135,000 records.
  • No passwords or other authentication credentials were compromised.

Official Statements & Responses

PNLD’s spokesperson confirmed the breach of names, organisations and work email addresses and said “there is no evidence to suggest that passwords or other security credentials have been compromised.” The agency has notified affected organisations, provided guidance and reported the incident to the UK Information Commissioner’s Office.

The National Crime Agency (NCA) is assisting with the investigation and noted that limited personal details of some NCA officers may also have been published.

Criticism & Opposition

The police federation criticised perceived under-investment in cyber defences, arguing that limited funding hampers law-enforcement bodies’ ability to protect sensitive personal data.

Conflicting Reports & Gaps

  • Victim Count: Figures range from “around 100,000” officers to “114,000” PNLD subscribers and “?135,000” total records claimed by ExfilSquad.
  • Attribution: ExfilSquad lists PNLD as a victim, but PNLD has not formally confirmed the group’s involvement.
  • Access Route: Security firm VenariX suggests a misconfigured Microsoft Power Pages portal may have allowed anonymous access to Dataverse tables, though neither PNLD nor VenariX have confirmed a specific cause.

Verbatim Quotes

  • “There is no evidence to suggest that passwords or other security credentials have been compromised.” — PNLD spokesperson
  • “ Tiff Lynch, the chairwoman of the Police Federation, said: "This reported breach raises serious concerns for officer and staff safety.” — Tiff Lynch, federation national chairman

What’s Next

The investigation remains active, with the NCA and specialist cybersecurity firms examining the incident. Affected organisations have been advised to monitor for targeted phishing attempts and to follow PNLD’s guidance. No ransom demand has been publicly reported, and UK government policy continues to discourage payment of extortion demands.