USA DeBusk Data Breach May Include Social Security Numbers and Passwords

USA DeBusk Data Breach May Include Social Security Numbers and Passwords

USA DeBusk reported a data breach that may have leaked Social Security numbers, financial details, medical information, and passwords. Here’s what happened and how you can better protect yourself today.

What happened in the USA DeBusk data breach?

According to Claim Depot, USA DeBusk LLC — a Texas-based company that provides industrial cleaning, maintenance, and infrastructure services — experienced unauthorized access to its network around September 5, 2025.

A ransomware group called EMBARGO later claimed it had taken 2 TB of company data. The group said the files included contracts, client records, employee information, and incident reports.

USA DeBusk investigated the incident with outside cybersecurity experts and blocked further unauthorized access.

On July 6, 2026, the company determined that an unauthorized third party had obtained personal information. USA DeBusk reported the breach to the California Attorney General on August 10.

Shamis & Gentile P.A. is now investigating potential claims from people affected by the breach. People who suffered fraud or related costs may be eligible for compensation, but compensation is not guaranteed.

Data taken in a breach can remain useful to criminals long after the attack ends. Identity, financial, medical, and login details may help them impersonate you or create convincing phishing messages.

Also, you may already have information circulating online from another breach without realizing it.

If you are unsure whether your information was leaked, automatic monitoring can help you spot problems earlier. Futureproof monitors your data for leaks 24/7 and helps you reduce scam risks with simple, clear steps.

Who was affected and what data was leaked?

USA DeBusk has not publicly shared how many people were affected, according to the information provided.

The company determined that personal information belonging to people connected with USA DeBusk had been taken. The exact information varied from person to person.

It may have included:

  • Names
  • Postal addresses
  • Email addresses
  • Telephone numbers
  • Dates of birth
  • Social Security numbers
  • Driver’s license numbers
  • Passport numbers
  • Bank account numbers
  • Payment card numbers
  • Other financial account information
  • Health insurance information
  • Health and medical information
  • Usernames
  • Passwords

This does not mean every affected person had all these types of information involved.

Check if your email was found in a leak

Futureproof monitors your information for data leaks 24/7 and guides you with clear steps to keep it safer from scams.

Run a free check

How criminals got into USA DeBusk’s network remains unclear

USA DeBusk has not publicly explained exactly how the attackers first gained access to its network.

That means the available information does not show which security weakness or entry method was involved.

EMBARGO is described as a ransomware group. Ransomware is harmful software criminals can use to steal or lock information and demand payment.

However, the source does not provide further technical details about how EMBARGO may have entered USA DeBusk’s systems.