Data breaches have become a defining risk of modern digital life. The Latitude Financial breach is one of the most significant in recent memory — and if you've ever had an account with the affected service, your personal data may be circulating among cybercriminals right now.

This guide explains exactly what happened, what data was taken, and how you can check whether your information was exposed — for free, in 30 seconds.

What Happened?

The details of this breach are covered in the FAQ section below, where we answer the most important questions clearly and concisely. The key facts: who was affected, what data was taken, how attackers got in, and what the consequences have been.

Why Does This Still Matter?

Many people assume that because a breach happened years ago, the risk has passed. In reality, stolen data is sold, traded, and reused for years after a breach. Credentials from old breaches are used in credential stuffing attacks — automated attempts to log in to your other accounts using the same email and password combination.

If you reused the same password across multiple sites, one old breach can unlock dozens of your current accounts.

How to Check If You Were Affected

The fastest way is to use our free breach checker. Enter your email address and we'll scan it against known breach databases instantly — no signup required.

If your email appears in a breach, you'll see exactly which breaches affected it and what type of data was exposed. That tells you precisely where to start.

What to Do If You Were Affected

If your data was in this breach — or any breach — take these steps:

Frequently Asked Questions

When did the Latitude Financial data breach happen?

Latitude Financial disclosed the breach in March 2023. The attack exploited a compromised employee credential at a service provider to gain access to Latitude's systems across Australia and New Zealand.

What data was stolen in the Latitude Financial breach?

Approximately 14 million records were taken. This included 7.9 million Australian and New Zealand driver's licence numbers (some dating back a decade), 53,000 passport numbers, and 6.1 million records containing names, addresses, dates of birth, and phone numbers — some dating to 2005.

Did Latitude Financial pay the ransom?

No. Latitude announced it would not pay the ransom, stating that paying would not guarantee the safe return of customer data and would only encourage further criminal activity. No data was publicly published by the attackers following the refusal.

How do I check if my Latitude Financial data was exposed?

Enter your email address in the free checker at Scan My Shadow. Latitude notified affected customers directly and set up a dedicated support line. Contact Latitude customer support if you previously held a Latitude credit card, personal loan, or interest-free finance product.

What should I do if my driver's licence was in the Latitude breach?

Contact your state or territory's road authority to discuss replacement options. Some jurisdictions issued replacement licence cards or new licence numbers to affected residents. Also request a credit report check and consider placing a credit alert.

Sources

Related Reading