Case File

7 Million Robinhood Users Hit by Data Breach

An unknown hacker manipulated a customer support employee over the phone to gain access to the trading platform's systems on November 3, 2021.

🇺🇸 American

Published June 6, 2025

A computer screen displays the Robinhood logo alongside an alert notification icon, symbolizing the massive user data breach and subsequent cybersecurity scandal.
EVIDENCE

Case Details

Quick Facts

Case Status
Solved
Location
Menlo Park, California, USA
Offer(e)
Robinhood Markets, Inc. og cirka 7 millioner brugere
Gerningssted
Menlo Park, Californien, USA
Dato for forbrydelsen
3. november 2021
Forbrydelsestype
Databrud / Cyberangreb
Sagsstatus
Igangværende
Dom
Uopklaret
Efterforskningsperiode
2021–
Nøglepersoner
Mandiant (cybersecurity-firma), amerikanske retshåndhævelsesmyndigheder

Quick facts

LocationMenlo Park, California, USA
Offer(e)Robinhood Markets, Inc. og cirka 7 millioner brugere
GerningsstedMenlo Park, Californien, USA
Dato for forbrydelsen3. november 2021
ForbrydelsestypeDatabrud / Cyberangreb

A Phone Call That Exposed Millions

On November 3, 2021, an unknown hacker targeted the American trading platform Robinhood, compromising data belonging to approximately 7 million users. The breach was not carried out through sophisticated technical exploits — instead, the attacker used social engineering, manipulating a customer support employee over the phone to gain access to the company's internal systems.

What Data Was Stolen

The breach exposed email addresses belonging to around 5 million users, while approximately 2 million users had their full names stolen. A smaller group of roughly 310 customers also had their names, dates of birth, and zip codes exposed. For about 10 customers, more extensive account details were compromised.

Despite the scale of the breach, Robinhood stated that critical financial data remained intact. No Social Security numbers, bank account numbers, or debit card details were accessed, and the company confirmed that no customers suffered financial losses as a result of the incident.

Timeline

3 November 2021

Cyberattack on Robinhood

An unknown hacker manipulates a customer service employee over the phone and gains access to the trading platform's systems.

3 November 2021

Data theft discovered

Robinhood discovers the security incident and begins containment. Data from approximately 7 million users was compromised.

3 November 2021

Extortion attempt

After the incident was contained, the hacker attempts to extort Robinhood and demands payments.

9 November 2021

Public announcement

Robinhood informs the public about the security incident. Mandiant and US authorities are brought into the investigation.

Extortion Attempt and Investigation

After Robinhood contained the breach, the attacker attempted to extort payment from the company. Both U.S. law enforcement authorities and cybersecurity firm Mandiant were brought in to investigate the incident.

The case remains unsolved. This attack is a stark reminder of how cyberattacks can be launched not through code, but through human manipulation — a tactic that continues to pose a serious threat to companies worldwide.

Robinhood publicly disclosed the breach on November 9, 2021, six days after the attack took place.

Ask about this case

Answers from KrimiNyt's coverage only

Follow this case

Get an email when a new documentary, podcast or book about 7 Million Robinhood Users Hit by Data Breach appears, or when a verdict is reached.

Share this post: