Arizona Courts Data Breach, 1.3 Million People May Have Had Personal Information Copied
Arizona’s court system says criminal hackers copied backup court files containing information about approximately 1.3 million people referred to its debt-collection program, with court debts dating back as long as 30 years. The copied FARE data includes names, case numbers and Social Security numbers.
The attack appears to have started around 11:30 a.m. on Thursday, September 24, 2026, when, according to the Arizona Judicial Branch, a court employee clicked a malicious link in a phishing email. Court IT staff shut it down less than two hours after identifying it. Chief Justice Ann Timmer alerted the public the next day.
The backup files also included records involving active and inactive protective orders and more than 150,000 Foster Care Review Board recommendation reports dating back to 2010.
As of October 7, 2026, no lawsuit, class action, settlement or claim form has been announced in the official court materials or in the news coverage reviewed.
Arizona Courts Data Breach: Quick Facts
| Detail | Information |
| Organization affected | Arizona Judicial Branch (Arizona Supreme Court and courts statewide) |
| Attack began | Thursday, September 24, 2026, about 11:30 a.m. |
| Public announcement | Friday, September 25, 2026 |
| Suspected entry point | Phishing email; a court employee clicked a malicious link |
| FARE program individuals | About 1.3 million, with court debts dating back 30 years |
| FARE data copied | Names, case numbers and Social Security numbers |
| Foster Care Review Board reports | More than 150,000, dating back to 2010 |
| Protective-order records | Active and inactive orders, including some sensitive information |
| Records deleted or altered | No, according to the court |
| Juror, witness or court-employee data | Not included, according to the court |
| Investigation | Ongoing; the FBI and other state and federal authorities are involved |
| Lawsuit or settlement | None announced |
What Happened in the Arizona Courts Cyberattack?
According to the Arizona Judicial Branch’s Cybersecurity Alert page, criminal hackers or their bots accessed and copied backup court files. The data came from a backup server that holds highly compressed information. The court says it has no evidence that the data has been accessed in readable form or shared, and notes that it is unclear whether most of the data can be easily read. The Chief Justice has said the data would need extra processing to be made readable. News coverage reports that the FBI, the Department of Homeland Security and the Arizona Department of Public Safety are involved in the investigation.
What Personal Information Was Copied From the Arizona Courts FARE Program?
The Fines/Fees and Restitution Enforcement (FARE) Program is a statewide Arizona Judicial Branch program that helps courts collect outstanding court-ordered debt from civil traffic, criminal traffic and criminal cases. The copied data on the roughly 1.3 million people referred to FARE includes names, case numbers and Social Security numbers.
The court did not say that everyone with an Arizona court case was affected. The 1.3 million figure covers people referred to FARE.
What Protective-Order Information Did Hackers Copy From the Arizona Courts?
The court says the copied files included records involving active and inactive protective orders, including some sensitive information. It has not published how many records were copied, and it says it is still identifying whose records were affected. Because protective-order records can involve people seeking safety from abuse or threats, anyone with a current or former protective order should watch for official notices, and should contact a local victim advocate or the National Domestic Violence Hotline at 1-800-799-7233 if they have safety concerns.
Related article: FreeStyle Libre 3 Plus and iLet Lawsuit, Shannon Johnson Sues Abbott and Beta Bionics Over Husband’s Death

What Foster Care Review Board Information Was Copied in the Arizona Courts Breach?
More than 150,000 Foster Care Review Board recommendation reports for current and past cases were copied. A Foster Care Review Board is a citizen panel that reviews dependency cases and makes recommendations to juvenile court judges. The reports can include general case information, information about the children, names of and statements by interested parties, the board’s findings, and recommendations for the court, the Arizona Department of Child Safety, and parents and other interested parties. The court says the reports do not include contact information such as addresses and phone numbers.
The court says it notified the Arizona Department of Child Safety, attorneys who represent parents and children in dependency cases (including public defenders), juvenile presiding judges and Foster Care Review Board members. It says active dependency cases are not affected.
Were Arizona Court Records Deleted or Changed in the Cyberattack?
No, according to the court. No court records were deleted, altered or erased, and the attack does not affect any pending case, the validity of any court order or any court date. The court also says the copied data did not include information on jurors, witnesses or court employees, based on what it knows so far.
How Can You Check Whether You Were Affected by the Arizona Courts Data Breach?
The Arizona Judicial Branch’s Cybersecurity Alert page (azcourts.gov/cybersecurityalert) has a “Verify Here” link for people referred to the FARE program. Go to it from the official azcourts.gov page rather than from an ad or a link in a message.
The court says official communications about the attack come by email from an official court address or by text from the short code 83958. FARE individuals are being notified by text, and an alert has been added to collections notices sent by mail. Questions can go to the Arizona Courts Help Desk at 602-452-3519 or 800-720-7743, Monday to Friday, 7 a.m. to 6 p.m.
If you were never referred to FARE, that does not tell you whether you were affected through protective-order or foster-care records, and the court is still identifying people in those groups.
What Should People Do After the Arizona Courts Data Breach?
The court encourages potentially affected FARE individuals to put a hold or freeze on their credit files with Equifax, Experian and TransUnion, and to visit the FTC’s identity-theft site (IdentityTheft.gov) and the Arizona Attorney General’s data-breach page. Practical steps:
- Check through the official verification link and watch for official notices.
- Freeze your credit with all three bureaus. A freeze makes it harder for someone to open new credit in your name.
- Watch your accounts and credit reports for unfamiliar activity.
- Expect scams. Don’t give your Social Security number, passwords or bank details to anyone who contacts you about the breach. Check the sender against the official channels above.
- Keep the notice you receive and bookmark the court’s page for updates.
Is There an Arizona Courts Data Breach Lawsuit or Settlement?
Not that has been announced. The court’s materials describe the attack, the notifications and the investigation, and no class action or claims process has been identified. Be careful with ads or sites that claim a settlement is open. If a lawsuit is filed later, a claim process could follow only after a court approves a settlement. For an example of a data breach case that did reach that stage, see Enroll Confidently $990K Settlement, Claim Up To $3,500 Now.
Arizona Courts Cyberattack Timeline
| Date | Event |
| September 24, 2026 | Attack begins around 11:30 a.m.; court IT staff shut it down in under two hours |
| September 25, 2026 | Chief Justice Ann Timmer announces the cyberattack |
| Late September 2026 | Court identifies affected categories and begins notifying people |
| October 1, 2026 | News coverage reports about 1.3 million people in the FARE program may be affected |
| October 7, 2026 | Investigation and notifications continue; no lawsuit or settlement announced |
Frequently Asked Questions About the Arizona Courts Data Breach
How many people were affected by the Arizona courts cyberattack?
About 1.3 million people referred to the FARE program, plus an unspecified number of protective-order records and more than 150,000 Foster Care Review Board reports.
Did the Arizona courts breach expose Social Security numbers?
Yes. The FARE data includes names, case numbers and Social Security numbers.
Does the breach affect everyone with an Arizona court case?
The court has not said so. The 1.3 million figure is for people referred to FARE.
Were Arizona court cases changed or delayed?
No. The court says no records were deleted or altered and pending cases are not affected.
How did the Arizona courts cyberattack happen?
Evidence so far suggests a phishing email: an employee clicked a malicious link.
Is there an Arizona courts data breach class action or settlement?
None has been announced as of October 7, 2026.
Should I freeze my credit after the Arizona courts breach?
The court encourages potentially affected FARE individuals to freeze or hold their credit with Equifax, Experian and TransUnion.
Where can I get official information?
azcourts.gov/cybersecurityalert, or the Help Desk at 602-452-3519 or 800-720-7743.
Bottom Line on the Arizona Courts Data Breach
Arizona’s courts say hackers copied backup files after an employee clicked a phishing link on September 24, 2026. The files include data on about 1.3 million people referred to the FARE debt-collection program (names, case numbers and Social Security numbers), protective-order records and more than 150,000 foster-care review reports. No lawsuit or settlement has been announced, so the useful steps now are to check through the official page, freeze your credit and watch for scams.
Sources
- Arizona Judicial Branch, Cybersecurity Alert page and FAQ (azcourts.gov/cybersecurityalert)
- Arizona Supreme Court news release, “Arizona Courts Experience Cyberattack”
- Arizona Attorney General, Data Privacy and Data Breach Reporting (azag.gov/consumer/data-breach)
- News coverage (FOX 10 Phoenix, KTAR) of the investigation and the 1.3 million figure
This article is for general information only and is not legal advice. AllAboutLawyer.com is not a law firm. The investigation is ongoing, and the scope of the breach may change.
Researched and written by Israr Ahmad, legal content researcher and founder of AllAboutLawyer.com. All facts verified against the Arizona Judicial Branch’s official Cybersecurity Alert page and FAQ, with investigation details as reported by news outlets, as of October 7, 2026. Last Updated: October 7, 2026.
About the Author
Israr Ahmad is a legal content researcher with 4+ years of experience covering class action settlements and consumer rights cases. He has researched and published coverage of 2,500+ settlements using verified court records, settlement administrator filings, and government sources. Learn more about Israr.
