TPWD Vendor Breach Exposes License DataTPWD Vendor Breach Exposes License DataCoverage from BleepingComputer, Houston Public Media, and others
00/00/0000
DailyWeekly
Texas Parks and Wildlife Department reported that a cybersecurity incident at an unnamed third-party license-system vendor may have exposed personal information belonging to more than 3 million hunting and fishing license customers.
The affected data may include driver’s license and passport information, email addresses, phone numbers, and residential addresses, while the department said there was no evidence that Social Security numbers, dates of birth, or payment information were accessed. TPWD and the vendor are strengthening access controls and monitoring, while affected individuals are being advised to watch for fraud and use offered credit-monitoring services.
Looking Back
63 Day Timeline
Articles published over time. Hover any bar for the period and its article count.
May 28
Jun 7
Jun 17
Jun 29
Jul 9
Jul 19
Jul 29
History
07/23/2026
The update mainly sharpens the TPWD breach details: the vendor remains unnamed, but Texas Cyber Command is now explicitly tied to detection and the exposed data list is more specific. It also reframes the response as active mitigation, with TPWD and the vendor adding safeguards and offering credit monitoring.
07/22/2026
The story has broadened from a single TPWD vendor breach to a second, separate Texas-related breach at Questo, shifting the focus from one large government-service exposure to a wider vendor-risk pattern affecting both public and consumer platforms. The TPWD incident also picked up more precise scope and access details, including the unnamed vendor and the specific data types not accessed.