Skip to content
Data breaches: an ever

Data breaches: an ever

Freedom.Press • November 19, 2025

DoorDash announced last week that an unauthorized third party (read: hackers) gained access to the personal information of a subset of its customers, delivery workers, and merchants. The cause? An employee was successfully targeted by a social engineering scam. While DoorDash stated that no “sensitive” information, such as social security or credit card numbers, was accessed, the breach did include names, phone numbers, email addresses, and physical addresses.

Unfortunately, these sorts of data breaches are far from rare. In fact, just a few days ago, Princeton University shared that attackers were able to gain access to a database containing “personal information such as names, email addresses, telephone numbers, and and business addresses” of “alumni, donors, faculty, students, parents, and other members of the University community.” Similar to the DoorDash breach, the database was accessed after hackers successfully targeted a university employee in a phishing attack.

Our team is always ready to assist journalists with digital security concerns. Reach out here , and stay safe and secure out there.

Senior Digital Security Trainer

Freedom of the Press Foundation

Extracted Entities

Attack Types (2)

MITRE ATT&CK (1)