Data breach
Brookview Financial
- Records
- 254,414
- Breach date
- 24 August 2026Estimated
- Added
- 28 August 2026
What was exposed
7 types of data · 1 puts you at serious risk
- Email addresses254,414
- Names241,828
- Phone numbers73,516
- Street addresses39,216
- Social security numbers325
- Dates of birth124
- Medical diagnoses2
About this breach
The ransomware group Dragonforce has claimed a breach of Brookview Financial, a private lender that finances real estate projects across the United States. According to our investigation team, the listing appeared on the group's leak site on August 24, 2026, and the catalog now holds 254,414 records tied to the incident. Dragonforce claims to hold data on many thousands of the company's customers, including credit reports and Social Security numbers. Brookview Financial, based in Connecticut, has not publicly confirmed the breach as of September 25, 2026, and no formal company notice or regulatory filing describing the incident has been located.
Limited public reporting: As of September 25, 2026, detailed company notices or major news coverage for this listing were limited in sources reviewed. The facts below rely primarily on the indexed fields plus any secondary sources cited.
Breach Timeline
August 24, 2026: The Dragonforce ransomware group listed Brookview Financial on its leak site, claiming to hold customer data including credit reports, Social Security numbers, and addresses, according to Ransomware.live, which recorded the listing at 15:25 UTC.
August 25, 2026: The incident was recorded in the Breachsense breach database, which lists the reported leak size as 103.72 GB, according to Breachsense.
What Information Was Compromised?
Our analysis found the following data types in this breach: email addresses tied to all 254,414 records, names for 241,828 individuals, phone numbers for 73,516, street addresses for 39,216, birthdays for 124, and Social Security numbers for 325.
The Dragonforce listing itself claims the stolen material includes credit reports, Social Security numbers, and addresses from the lender's customer base, according to coverage by GalaxyWarden.
Not every individual is affected by every type of data listed here.
The relatively low counts of Social Security numbers and birthdays compared with the total record count suggest those fields appear in only a small portion of the dataset. The listing does not specify which categories apply to any individual customer.
What Are the Potential Risks for Affected Individuals?
Because this breach involves a financial lender, the exposed data carries risks that go beyond ordinary spam. Email addresses, names, and phone numbers in combination can fuel targeted phishing: messages that reference real loans, property addresses, or financing amounts to appear legitimate. Someone impersonating Brookview or another lender could pressure a recipient into wiring money or handing over account details.
For the smaller number of people whose Social Security numbers or birthdays were included, the risk of identity theft is more direct. Those details can be used to open new credit accounts, file fraudulent tax returns, or answer security questions on existing accounts.
What Should You Do If You Were Affected?
Watch for any direct notification from Brookview Financial. If the company confirms the breach, it is generally required to notify affected customers directly.
Treat unexpected emails, calls, or texts about loans, wire transfers, or account verification as suspicious, even when they reference accurate personal details. Verify by calling the lender at a number you look up yourself.
Place a fraud alert with one of the three credit bureaus, Equifax, Experian, or TransUnion. One bureau notifies the others, and lenders must take extra steps to verify your identity before opening new accounts.
Review your credit reports for unfamiliar accounts or inquiries. Free weekly reports are available at AnnualCreditReport.com.
Consider a credit freeze, which blocks most new credit access in your name and can be lifted temporarily when you apply for credit yourself.
Monitor bank and credit card statements for activity you did not authorize.
