TPWD alerted hunters and anglers that a cybersecurity incident involving a third-party license vendor may have exposed driver's license numbers, passport numbers, emails, phone numbers and home addresses for more than 3 million Texas hunting and fishing license holders. Investigators say there is currently no evidence that Social Security numbers or credit card information were accessed. TPWD and the vendor are implementing additional safeguards and urging affected customers to monitor their credit, set fraud alerts, and watch for phishing attempts.
Hack May Have Exposed Data of More Than 3 Million Texas Hunting and Fishing License Holders

The Texas Parks and Wildlife Department (TPWD) notified hunters and anglers on Friday that a cybersecurity incident — first detected by Texas Cyber Command — may have exposed personal information for more than 3 million people who purchased Texas hunting or fishing licenses. TPWD said the intrusion involved a third-party vendor that processes license sales.
According to the Texas Cyber Command investigation, the attacker may have accessed driver's license numbers, passport numbers, email addresses, phone numbers and residential addresses for many license holders. Investigators currently believe more sensitive items such as Social Security numbers and credit card information were not obtained, and there is no evidence that any specific group was targeted.
TPWD statement: "We recognize the seriousness of the issue and have identified and implemented additional security options to better protect customer information. Many of our staff are hunters and anglers and were affected by this incident."
The department said it will continue working with the vendor to implement additional safeguards and monitor for suspicious activity. TPWD also confirmed that license sales will continue as scheduled for August and for the next license year while protections are strengthened.
Recommended Steps for License Holders
- Actively monitor financial statements and review your credit reports for unauthorized activity.
- Consider placing a credit freeze and enroll in credit monitoring services.
- Set a free, one-year fraud alert through Equifax, Experian and TransUnion.
- Be alert for phishing attempts—do not click links or share personal details unless you can verify the sender.
- Use strong, unique passwords and enable multifactor authentication where available.
If you received direct notice from TPWD or the vendor, follow the guidance in that communication and report any suspected fraud to your financial institutions and the major credit bureaus. TPWD and Texas Cyber Command said the investigation is ongoing and that affected customers will be updated as more information becomes available.
Help us improve.

































