Lloyds Bank Users Exposed to Unauthorized Account Access
Article Content
- •Users of Lloyds, Halifax, and Bank of Scotland reported unauthorized account access.
- •Exposed data includes names, sort codes, and transaction histories dating back to December.
- •The cause of the exposure and the number of affected users remain unknown.
On March 12, 2026, users of Lloyds Bank, Halifax, and Bank of Scotland reported seeing unauthorized access to other people's account details when logging into their banking apps. The exposed information included names, sort codes, spending histories dating back to December, and unfamiliar transactions. This incident appears to be a significant data exposure issue affecting multiple banks under the Lloyds Banking Group. The exact cause of the incident has not been disclosed, and there are no specific CVEs or attack vectors mentioned in the articles. The scope of the impact is currently unclear, but it raises serious concerns about data security and user privacy. As of now, the banks have not issued a public statement regarding the incident. Users are advised to monitor their accounts for any suspicious activity. The situation is ongoing, and further updates are anticipated.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Bank Of Scotland in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical GitLab Vulnerabilities Exploited Within Hours of Disclosure On September 10, 2026, GitLab released patches for critical vulnerabilities CVE-2026-85706 and CVE-2026-87719. CVE-2026-85706, a path traversal flaw, allows unauthenticated users to read arbitrary files from GitLab servers, while CVE-2026-87719 enables credential theft via insecure deserialization. Both…