Hackers stole the personal data of 3,615 Trump Mobile customers, and the company told Sen. Maggie Hassan's office it had "no team to handle this" when notified of the breach, according to a letter the New Hampshire Democrat sent to federal regulators. The same letter says Trump Mobile appears to have never obtained the authorizations required to operate its international calling service.
Hassan sent the letter to the Federal Communications Commission and other agencies, asking them to examine both the data breach and the company's regulatory status. The breach notification figure of 3,615 affected customers is the first specific count tied to the incident.
The missing authorization matters because international calling traffic that runs without proper FCC approval leaves no clear record of which company is actually carrying the calls. Hassan wrote that "the apparent absence of authorization for Trump Mobile international services raises questions about who is providing or reselling the service" — a gap she said could expose U.S. communications to interception.
The FCC has warned that unauthorized foreign carriers can "access, monitor, store, disrupt and/or misroute US communications." Routing American calls through uncertified providers is a known vector for surveillance and fraud, which is why the commission requires carriers to register before connecting international traffic.
Hassan also flagged the breach response itself. In her letter, she said Trump Mobile "claimed that when it notified Trump Mobile of the breach, the company responded that '[w]e have no team to handle this.'" A consumer phone carrier handling thousands of customers' personal information is expected to maintain incident response staff and report breaches under FCC rules.
The senator raised a separate concern about how easily the service can be activated. She pointed to "streamlined service activation that can make it easier for scammers to obtain US numbers," a problem that has drawn FCC scrutiny across the telecom industry as criminals use hijacked or fraudulently obtained numbers for robocalls and impersonation schemes.
Trump Mobile launched as a branded wireless offering tied to President Trump, selling service through a mobile virtual network operator model in which an existing carrier's network is resold under another name. MVNOs still must meet FCC obligations for international traffic and consumer protection, regardless of whose towers they use.
Hassan's letter asks the FCC and other agencies to determine who authorized the international portion of the service, whether customer data was protected under federal rules, and what, if any, enforcement action is warranted. Neither Trump Mobile nor the FCC has publicly responded to the letter.