LexisNexis 2026.0 Data Breach

LexisNexis Risk Solutions Breach (2026): Legal & Identity Intelligence Provider | ObscureIQ
ObscureIQ Breach Intelligence

Classification Tags

FulcrumSecWeb Application ExploitData BrokerEmail Address
High SeverityWebsite / service breach

LexisNexis Risk Solutions Breach (2026): Legal & Identity Intelligence Provider

Legal, regulatory, and analytics information services company.

Verified by ObscureIQ Intelligence
61/100Breach Risk Index
14Data Value
60Market Recency
125dSince Breach

Breach Intelligence Summary

Entity: LexisNexis · Actor: FulcrumSec · Sources: 2 references
Attack: Web Application Exploit
Profile: Data Broker · Legal, regulatory, risk, and identity intelligence services · Data aggregation and intelligence provider · Global
Timeline: Breach (2026-03-04) · Indexed (Mar 05, 2026) · Year (2026.0)
Exposure: 16K records · 1 fields: Email Address
Status: Confirmed

Executive Summary

A LexisNexis cloud-infrastructure breach (disclosed around 2026, attributed to the group FulcrumSec) exploited an unpatched AWS application (the React2Shell / CVE-2025-55182 vulnerability). Attackers claimed roughly 3.9 million records and ~400,000 cloud user profiles including names, phone numbers, email addresses, and business contact details. The dataset indexed here covers about 15,808 unique email addresses.

ObscureIQ assessment: Extremely high risk because the data is already normalized for discovery and linkage. Exposure enables profiling, stalking, executive targeting, identity theft, and cross-dataset correlation at scale.

Breach Impact

Exposure of business/user contact data for a risk-data provider supports targeted phishing of legal/government/enterprise users; the broader claimed set (incl. AWS secrets) raised significant supply-chain concern.

About LexisNexis

LexisNexis is a major data, analytics, and risk-information provider serving legal, government, and business customers.

Why They Hold Your Data

Legal, risk, and identity-intelligence providers aggregate identity, contact, legal, regulatory, financial, and investigative data into searchable products used for compliance, due diligence, and person resolution.

Data Points Exposed

1 verified field types
Email Address

Field names are shown in full for clarity and search visibility. Canonical machine keys are emitted only in this page’s structured data.

Exploitation & Downstream Threats

Threat Activity:Moderate
Primary downstream threats:
  • Targeted phishing campaigns using exposed email addresses
Threat vectors:
  • Phishing, credential stuffing & account takeover

Threat Actor: FulcrumSec

FulcrumSec
Web Application Exploit

Attribution and method are based on available breach intelligence. Reported attack vector: Web Application Exploit.

Recommended Actions

If you believe your information may be included:

Enable MFA Everywhere
Turn on multi-factor authentication on email first, then financial accounts.
Report & Recover
If you spot misuse, start an official recovery plan and report fraud.

Frequently Asked Questions

What happened in the LexisNexis breach?

A LexisNexis cloud-infrastructure breach (disclosed around 2026, attributed to the group FulcrumSec) exploited an unpatched AWS application (the React2Shell / CVE-2025-55182 vulnerability). Attackers claimed roughly 3.9 million records and ~400,000 cloud user profiles including names, phone…

What data was exposed?

Verified fields include Email Address.

What should I do if I was affected?

Change reused passwords, enable MFA, and (if identity or financial data is involved) freeze your credit and monitor your accounts.

Sources & References

Every claim on this page is traceable. This breach draws on:

Breach Index
DataBreach.com
Record & field corroboration
ObscureIQ Intelligence
ObscureIQ proprietary analysis
Risk Index scoring & downstream-threat assessment

Protect Yourself

Check If You're Affected

Enter your email to check whether your data appears in this breach. We’ll send a 6-digit code to confirm it’s your address.

Get Free Breach Alerts

Be the first to know when new breaches are disclosed. Free forever — confirm your email with a 6-digit code.

High-Risk? Get an Exposure Audit

Executives, public figures, and high-visibility operators can receive tailored exposure intelligence and hardening guidance.

Request Consultation