# Massive Breaches Expose Millions of Sensitive Records in North America

*Published September 7, 2026*
*Source: [https://www.vulnu.com/p/vulnerable-u-184](https://www.vulnu.com/p/vulnerable-u-184)*

## Executive Summary

*This is a Premium edition. The Executive Summary is available to sec-news.ai members —*
*[read it here](https://www.sec-news.ai/news/massive-breaches-expose-millions-of-sensitive-records-in-north-america) or [see plans](https://www.sec-news.ai/pricing).*

## Article

A recent cybersecurity breach has exposed over 153 million US and Canadian driver's licenses, ID cards, and other documents, with data being sold on a Russian cybercrime forum. The breach was traced back to idscan.net, a company responsible for ID verification for major brands like Hertz and Target. The FBI is investigating, and the site went offline shortly after the breach was reported. The exposed records include infrared and ultraviolet scans, making them impossible to replace like a password.

In another incident, McKesson, a key pharmaceutical distributor in North America, suffered a significant data breach. Attackers accessed third-party applications related to its oncology and medical-surgical units, extracting data over several days. The breach involved vishing into Okta SSO accounts and accessing systems like Salesforce and Snowflake, leading to a demand for over $55 million in ransom.

Furthermore, Anthropic disclosed that common infostealer malware has been extracting Claude session cookies from compromised machines. The company is taking measures by signing out affected accounts, removing saved payment methods, and providing refunds where unauthorized charges are identified. Named malware families include Vidar, LummaC2, and RedLine among others, affecting both Windows and Mac users.
