Carriers & OperatorsTrump MobileMvnoData BreachLiberty Mobile

Hackers expose Trump Mobile data of 3,615 subscribers via MVNO partner

Cybercrime group BYOD exposed the personal data of 3,615 Trump Mobile subscribers after breaching systems at Liberty Mobile, the MVNO behind the carrier launched in June 2025 by Donald Trump's two oldest sons.

3 min read

Why it matters

  • 3,615 Trump Mobile subscribers had personal data exposed in the BYOD breach last week
  • Attackers entered through malware on a Liberty Mobile employee device, per PCMag
  • Trump Mobile launched in June 2025 with the $499 T1 Phone and took $100 deposits from an estimated 600,000 people
  • First shipments targeted August or September 2025
  • This is the second Trump Mobile customer data exposure of 2025, after a May incident tied to device shipping

The story

Hackers exposed the personal data of 3,615 Trump Mobile subscribers after breaching systems at Liberty Mobile, the mobile virtual network operator that powers the carrier launched in June by US President Donald Trump's two oldest sons.

Cybercrime group BYOD carried out the attack last week and made the customer list publicly accessible, according to Straight Arrow News. The same outlet reported BYOD contacted Trump Mobile after the breach and quoted the carrier as saying the company has no cybersecurity team. Trump Mobile representatives likened BYOD's actions to terrorism, the report added.

How did the attackers get in?

PCMag reported BYOD gained access to customer data through malware installed on the device of a Liberty Mobile employee. Liberty Mobile, a small Florida company, provides the underlying wireless service for the Trump Mobile brand.

What did the leaked data contain?

A review of the stolen records by Straight Arrow News determined the leak included personal details about Eric Brunnett, Trump Organization's VP and CIO. Information on members of the president's family was not in the exposed dataset.

A second exposure in 2025

The breach marks the second time Trump Mobile customer information has surfaced publicly this year. Sensitive customer data was exposed in May, when the company began shipping its T1 Phone to early buyers. The May episode and the latest BYOD incident together suggest the MVNO arrangement has not delivered the customer-data safeguards the brand's high-profile launch implied.

How did the carrier pitch the T1 Phone?

Donald Trump Jr. and Eric Trump unveiled Trump Mobile and the T1 Phone in June 2025. The handset carries a $499 price tag, and the carrier took $100 deposits from an estimated 600,000 prospective customers as it targeted first shipments in August or September 2025.

Trump Mobile has since stripped the marketing claim that the T1 Phone was "proudly designed and built in the United States" from press materials and the company website. CNN previously reported the device strongly resembles a Chinese phone retailing for less than $200 at Walmart.

Who is accountable under the MVNO structure?

Trump Mobile does not own spectrum, towers or core network assets. The MVNO model means Liberty Mobile handles network operations, billing systems and customer records while the Trump-affiliated brand owns the consumer-facing side.

Security responsibility for the 3,615 exposed records will depend on which entity held the database, a question investigators have not yet answered publicly. Either way, the breach lands on a brand built on a personal-data-protection narrative that its marketing has leaned into heavily.

What regulatory exposure does the carrier face?

The incident is the kind of small-base, high-visibility breach that typically draws regulatory attention when a carrier crosses state-level data-notification thresholds. With 3,615 records, Trump Mobile would generally fall outside the headline thresholds that trigger immediate federal disclosure rules, but state attorneys general in affected jurisdictions retain oversight authority.

A spokesperson for Trump Mobile did not respond to requests for comment on the BYOD incident by the time of publication.

What comes next for Trump Mobile?

The carrier has not publicly named a security vendor, disclosed its breach-notification plan or indicated whether it will offer credit monitoring to affected subscribers. Trump Mobile faces the dual task of restoring customer trust while the T1 Phone shipment schedule and US-manufacturing claims remain unresolved.

The latest exposure adds to a turbulent launch year for Trump Mobile and leaves open how the brand and its MVNO partner will restructure security operations ahead of any wider commercial rollout.

Also reported

Share this article:

« Previous

More from James Calloway

James Calloway

Show full bio

Staff writer covering consumer brands and retail at Telecom Gazette.

142 articles