Skip to content

loanDepot

Disclosed Jan 8, 20242 years ago16,900,000 affectedConfirmed

Official notice

Ransomware attack on loanDepot exposes data of 16.9 million people

Mortgage lender loanDepot disclosed a cybersecurity incident in January 2024 that involved encryption of data and forced it to shut down systems, leaving customers unable to make payments online. It later said it would notify up to about 16.9 million people whose sensitive personal information was affected.

What is known

People affected16,900,000 (as reported by the organization)
DisclosedJan 8, 2024
DiscoveredJan 4, 2024
AttackRansomware
Data exposedNames, Addresses, Social Security numbers, Dates of birth, Phone numbers, Emails, Financial
SectorFinance · US
StatusConfirmed

Sources

Notices filed

WhereFiledPeople
ResearchtotalJan 8, 202416,900,000
SEC 8-K 8.01totalJan 8, 2024
SEC 8-K 8.01totalJan 22, 2024
SEC 8-K 8.01totalFeb 27, 2024

Other breaches at loanDepot

BreachAffected
Disclosed May 15, 2023May 15, 20233 years ago1,364
History of this record
  • 2026-09-25 · source: empty to https://www.sec.gov/Archives/edgar/data/1831631/000183163124000011/ldi-20240104.htm · backfill source
  • 2026-09-25 · added · seed source

First seen 2026-09-25 (Research), confirmed by Research. Record counts are as reported. Not legal advice.

Everything about loanDepot

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.