North Carolina Courts Failed to Report Jury Data Breach
The administrative office omitted notifying the state justice department of a significant private data exposure.
Updated on Sept. 28, 2026 in Cybersecurity

Live Poll
Do you trust your local government agencies to securely handle your sensitive personal information?
The North Carolina Administrative Office of the Courts failed to alert the state Department of Justice regarding a major data breach. A website flaw left sensitive information belonging to jury duty summons recipients publicly exposed.
Why it matters
State law requires notification of security breaches to protect citizens from identity theft. The failure to comply with these transparency protocols denies the public and state officials the opportunity to mitigate potential damages.
A website feature intended for uploading jury excuse documentation contained a flaw that made files publicly accessible without authentication. The exposure included Social Security numbers, driver's licenses, and private medical records.
The players
North Carolina Administrative Office of the Courts
This government entity is responsible for the operational and administrative functions of the state's judicial system.
North Carolina Department of Justice
This state department provides legal representation and advice to state agencies and enforces laws across North Carolina.
The details
The breach occurred because document links lacked proper authentication, allowing anyone to view uploaded records. Information was only blocked from public view after a media investigation brought the vulnerability to light.
Timeline
September 28, 2026: The report surfaced detailing the lack of breach notification.
The Tech Race
This incident follows a pattern where government agencies struggle to secure legacy web portals against unauthorized access. It highlights the widening gap between mandatory cybersecurity compliance and the technical implementation of public-facing state platforms.
Residents who recently uploaded documents for jury service may face an elevated risk of identity theft due to the exposure of their personal records. Affected individuals should monitor their credit reports and financial statements for suspicious activity.
The takeaway
Entities managing sensitive public data must implement strict authentication checks to prevent unauthorized access to uploaded documents. Verification of security protocols is essential to ensuring that electronic filings do not become permanent privacy liabilities.
Further reading
For more on how state agencies manage digital security, visit Cybersecurity.
Live Poll
Do you trust your local government agencies to securely handle your sensitive personal information?










