Data Breach Response: Choose Steps for the Data Exposed
Verify the breach notice through the organization’s official channel, then respond to the information exposed. A leaked password and a leaked Social Security number need different protections.
By ZoraSafe · Content reviewed · Originally published
Confirm the notice
Do not use an unexpected notice as your login link. Open the organization’s known website or app and look for its published guidance. Record what it says was exposed and when.
Sources: FTC: How to recognize and avoid phishing scams; FTC: IdentityTheft.gov data breach response
Match the response to the exposure
- For passwords: replace the exposed password and any reused copies; review MFA and signed-in sessions.
- For payment details: contact the issuer through a known channel and review transactions.
- For identity details: use IdentityTheft.gov’s data-breach checklist, including credit-related precautions appropriate to the information involved.
- For a child’s information: use the child-specific recovery and freeze procedures.
Sources: FTC: IdentityTheft.gov data breach response; FTC: What to know about identity theft; FTC: How to protect your child from identity theft
Related guidance: Identity Theft and Credit Freezes
Keep watching for follow-up scams
A notice can be followed by impersonation attempts that use the exposed details to sound credible. Keep records and review accounts, but do not pay someone who guarantees that they can erase leaked information.
Sources: FTC: How to recognize and avoid phishing scams; FTC: Refund and recovery scams
Related guidance: This Text Isn't From Your Bank: Verify the Alert
Sources and product references
Reviewed 2026-10-07. Source dates and scope matter; a linked source supports the associated guidance, not every claim about every product.
