Fall ResetAmazon USFall reset deals: check better picks before checkoutAmazon US: today's deals, useful picks and quick comparisons.Check DealsPC HealthRecommendedCrashes, freezes, slowdowns? Check your PC nowSpot repairable issues before they interrupt work.Check PCFall ResetAmazon USWork and home upgrades are worth comparing todayAmazon US: today's deals, useful picks and quick comparisons.See Picks×
Skip to content
Blog

Maxar Confirms Hacker Accessed Employees’ Social Security Numbers and Personal Data

By TheFinanceBase Team6 min read
Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Some links on this page are affiliate links: if you buy through them we may earn a commission, at no extra cost to you.

Maxar Space LLC and Maxar Space Robotics LLC disclosed that a hacker accessed files containing employees’ personal information, including Social Security numbers, names, home addresses and employment records. Maxar said the intrusion occurred on October 4, 2024, was discovered on October 11, and likely lasted about one week.

The public notice confirms unauthorized access to employee-data files. It does not establish that Maxar’s satellites, spacecraft, classified systems or government-customer networks were compromised. Maxar also has not publicly disclosed how many people were affected or whether the files were copied or misused.

What Maxar confirmed

Maxar’s disclosure was submitted to the California attorney general on November 15, 2024. The filing identifies Maxar Space LLC and Maxar Space Robotics LLC as the affected entities.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

According to the company’s notice, a hacker using a Hong Kong-based IP address accessed a system containing files with employee personal data. An IP address does not prove where the attacker was physically located: it may have belonged to a VPN, proxy, compromised server or another intermediary.

Maxar said its information-security team discovered the unauthorized access on October 11, 2024, approximately one week after the October 4 incident. The company said it took steps to block further access and retained an outside party to investigate.

View the California attorney general’s breach record.

What information was exposed?

Maxar’s notice listed the following information categories:

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Information Status
Name Included
Home address Included
Social Security number Included
Business phone, location or email information Included
Gender Included
Employment status Included
Employee number Included
Job title Included
Hire date or role-start date Included
Termination date, where applicable Included
Supervisor and department Included
Bank-account information Not included, according to the notice
Date of birth Not included, according to the notice

A Social Security number combined with a name, address and detailed employment information can support identity theft, impersonation and targeted social-engineering attempts. That is a general risk assessment—not evidence that anyone’s information was misused in this incident.

Read Maxar’s redacted sample notification.

Timeline

  • October 4, 2024: Maxar listed the date of the unauthorized access.
  • October 11, 2024: Maxar said its information-security team discovered the incident.
  • November 15, 2024: The notice was filed with the California attorney general.
  • November 18, 2024: TechCrunch reported Maxar’s confirmation.

Maxar described the access period as approximately one week. “Accessed” is important: the public notice confirms unauthorized access to the files, but does not establish which files were copied, whether all data was exfiltrated, or whether it was later posted, sold or used.

How many people were affected?

The publicly available material reviewed for this report does not provide a victim count. The California filing contains a sample notice and does not state the total number of affected individuals.

Readers should not assume that every Maxar employee, contractor or former employee was affected. TechCrunch reported that Maxar had about 2,600 employees and that more than half had U.S. security clearances at the time, but that 2024 figure is not a current headcount and does not establish the number of people included in the files.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Does this mean Maxar’s satellites or classified systems were hacked?

Not based on the public notice. The disclosure describes access to a system containing employee personal-data files. It does not say that satellites, spacecraft, imagery systems, launch systems, classified networks or government-customer systems were accessed.

The fact that some employees held security clearances is relevant context, but it is not evidence that classified information was involved. The public sources also do not identify the attacker, motive or type of intrusion. They do not establish whether this was ransomware, espionage, credential theft or another form of attack.

The most accurate description is: Maxar confirmed unauthorized access to files containing employee personal information.

What Maxar did after discovering the incident

According to the notice, Maxar:

  • Took immediate action to prevent further unauthorized access.
  • Notified law enforcement.
  • Retained an outside party to investigate and help confirm that the conditions enabling the access had been eliminated.
  • Offered current employees IDShield identity-protection services, with Maxar paying the cost.
  • Offered former employees identity protection and credit monitoring through IDX.

The former-employee sample notice listed February 15, 2025 as the IDX enrollment deadline. That deadline has passed. Readers should not assume the breach-specific offer remains available; they should verify any current eligibility directly through a verified Maxar communication.

Free tools Windows power users keep installed

One-click scans. No signup required.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

What affected employees should do now

1. Verify the notice

Use the contact details in the notice you received or a verified Maxar communication. Do not enroll through an unsolicited email, text message or social-media link claiming to offer breach assistance.

2. Review your credit reports

Obtain reports through AnnualCreditReport.com, the official site referenced in Maxar’s notice. Look for unfamiliar accounts, hard inquiries, addresses or employers.

A credit report is not continuous monitoring and does not by itself prevent fraud, so continue reviewing financial accounts and statements.

3. Consider a credit freeze

A security freeze can make it harder for someone to open new credit accounts in your name. You generally need to place and manage a freeze separately with:

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

A freeze can create extra steps when you apply for credit because you may need to lift it temporarily. It also does not prevent every form of account takeover, payroll fraud, tax fraud or phishing. A fraud alert is a less restrictive alternative that asks creditors to take additional identity-verification steps.

4. Watch existing accounts

Check bank, credit-card, investment, payroll and other accounts for unauthorized activity. A credit freeze focuses primarily on new-account fraud; it will not necessarily protect an existing account that an attacker takes over.

5. Expect targeted phishing

The exposed employment details could make convincing impersonation attempts easier. Be cautious of messages about:

  • Payroll or benefits corrections
  • Security-clearance paperwork
  • Employee-number verification
  • Supervisor or department changes
  • Monitoring-service enrollment
  • Documents or login requests sent through unexpected links

Confirm requests through a known internal phone number or company portal. Never provide credentials, authentication codes or sensitive program information solely because a message includes accurate employment details.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

6. Report suspected identity theft

Use the Federal Trade Commission’s ReportFraud.ftc.gov service or its identity-theft resources if you find suspicious activity. Keep copies of notices, account records and communications related to the incident.

7. Take extra care if you work on sensitive programs

Current or former personnel connected with classified work should report suspicious attempts to solicit protected information through the appropriate employer or government security channels. The employee-data breach does not itself show that classified information was exposed, but social-engineering attempts can still create a separate security risk.

Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

What people who were not notified should know

Do not assume you were affected simply because you worked for Maxar, and do not assume you were excluded solely because you are a former employee. If you believe you may be included, contact Maxar through a verified official channel.

Do not sign up for a monitoring service through an unsolicited message. Use official contact information and ask whether the original breach-specific offer still applies. The former-employee deadline identified in the sample notice has expired.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Credit monitoring is not the same as a credit freeze

Credit monitoring can alert you to changes or suspicious activity after they appear, but it does not prevent someone from applying for credit.

A credit freeze restricts prospective creditors’ access to your credit file and can reduce the risk of new-account fraud. It may need to be lifted when you apply for legitimate credit.

A fraud alert is less restrictive than a freeze and signals creditors to take additional steps to verify your identity.

None of these measures addresses every risk from exposed employment data. Account monitoring, phishing awareness and prompt reporting remain important.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Bottom line

The disclosed incident was a serious employee-data breach involving Social Security numbers, addresses and employment records. The public notice does not establish that Maxar’s satellites, classified systems or government-customer networks were compromised, does not disclose how many people were affected and does not prove that every exposed file was copied or misused.

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

Written by TheFinanceBase Team

The Team behind TheFinanceBase.

Add your note

Your email address will not be published. Required fields are marked *

What’s actually slowing this PC down?

Pick the symptom - the matching free tool is one click away.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Recommended PC Tool
Recommended PC Tool
Crashes, No Sound, or Screen Glitches?Free driver scan
Windows Errors? Fix Them Before They SpreadFree repair scan

Two free Windows tools

One Free Minute Could Fix That PC

Before you go - each of these free tools takes about a minute and tackles what quietly slows a Windows PC down.

Special offer. View Outbyte info, uninstall instructions, EULA, and Privacy Policy.