Skip to main content

    Data Breach Response: Choose Steps for the Data Exposed

    Verify the breach notice through the organization’s official channel, then respond to the information exposed. A leaked password and a leaked Social Security number need different protections.

    By ZoraSafe · Content reviewed · Originally published

    Confirm the notice

    Do not use an unexpected notice as your login link. Open the organization’s known website or app and look for its published guidance. Record what it says was exposed and when.

    Sources: FTC: How to recognize and avoid phishing scams; FTC: IdentityTheft.gov data breach response

    Match the response to the exposure

    1. For passwords: replace the exposed password and any reused copies; review MFA and signed-in sessions.
    2. For payment details: contact the issuer through a known channel and review transactions.
    3. For identity details: use IdentityTheft.gov’s data-breach checklist, including credit-related precautions appropriate to the information involved.
    4. For a child’s information: use the child-specific recovery and freeze procedures.

    Sources: FTC: IdentityTheft.gov data breach response; FTC: What to know about identity theft; FTC: How to protect your child from identity theft

    Related guidance: Identity Theft and Credit Freezes

    Keep watching for follow-up scams

    A notice can be followed by impersonation attempts that use the exposed details to sound credible. Keep records and review accounts, but do not pay someone who guarantees that they can erase leaked information.

    Sources: FTC: How to recognize and avoid phishing scams; FTC: Refund and recovery scams

    Related guidance: This Text Isn't From Your Bank: Verify the Alert

    Sources and product references

    Reviewed 2026-10-07. Source dates and scope matter; a linked source supports the associated guidance, not every claim about every product.