Data Enrichment Exposure From Pdl Customer Jun 2026
"Data Enrichment Exposure From PDL Customer," was not a direct breach of the data enrichment firm People Data Labs (PDL) itself, but rather an exposure caused by an unidentified customer who left a database unsecured. Have I Been Pwned +2 Core Exposure Details Total Records: 1.2 billion personal data records. Unique Accounts: 622.2 million unique email addresses. Discovery Date: October 2019. Added to HIBP: November 22, 2019. Have I Been Pwned +1 Exposed Content Categories The dataset was a collection of "enriched" profiles, which aggregate information from various public and private sources. The exposed information included: Identity Information: Full names and social media profiles (LinkedIn, Facebook, Twitter, and Github). Contact Details: Email addresses and phone numbers. Professional Data: Job titles, employers, and work history. Geographic Data: Location information. Key Contextual Facts The Source: While the data originated from People Data Labs and another firm called
In the modern data economy, "data enrichment" is often viewed as a standard hygiene practice rather than a security risk. Companies take their internal customer lists—often sparse, containing only a name and an email address—and cross-reference them with massive third-party databases, frequently referred to as Professional Data Lists (PDLs), to fill in the blanks.
For PDL customers (the companies buying the data), the supply chain is often opaque.
PDL aggregates from public sources, but the customer (us) has no visibility into which sources were used for each enriched field. When a lead asked, “Where did you get my personal cell number?” we couldn’t answer. PDL’s response: “It’s from public records.” That’s not enough for enterprise compliance. data enrichment exposure from pdl customer
The benefits of data enrichment are numerous. By enriching customer data, businesses can:
The breach impacted approximately 622 million unique individuals . What Data Was Exposed?
Because PDL enriches so aggressively, our own customer records became a liability. We accidentally exposed inferred data (e.g., “likely income range”) to sales reps who had no business seeing it. Worse, PDL doesn’t offer granular field-level suppression. You either accept their full enrichment payload or build a custom middleware filter yourself. "Data Enrichment Exposure From PDL Customer," was not
Profiles and URLs from LinkedIn, Facebook, Twitter, and GitHub. Geographics: Physical locations and cities. Why This Is Dangerous
Rating: ⭐⭐☆☆☆ (2/5) Role: Head of Revenue Operations | Industry: B2B SaaS
Data enrichment is a powerful tool for businesses seeking to gain a deeper understanding of their customers. By enriching existing customer data with external data sources, businesses can improve customer segmentation, enhance customer experience, increase conversion rates, and reduce data quality issues. PDL's data enrichment solutions have helped numerous businesses expose valuable customer insights, driving business growth and revenue. As the importance of data-driven decision-making continues to grow, data enrichment will become an increasingly essential component of any business strategy. Discovery Date: October 2019
Data enrichment is a double-edged sword. While it provides the context businesses crave, it increases the "blast radius" of any potential data breach. For PDL customers, the responsibility lies in recognizing that the more they enrich their data, the more valuable—and dangerous—that data becomes to attackers.
Job titles, employer names, and work history.