← Palantir Technologies

2021 Palantir software (FBI deployment) — access-control defect exposed investigative material

2021 Unknown records affected Share on X

Data compromised

Sensitive investigative records accessible outside intended personnel compartments (per described defect)

Technical writeup

Journalism citing DOJ oversight described a configuration/software defect in FBI deployments of Palantir’s analytics software that, for more than a year, could permit users without proper clearance to view sensitive law-enforcement datasets (e.g., case details beyond their authorization). Palantir attributed the failure to customer-side deployment settings and stated a fix was supplied; political oversight hearings amplified the episode. This entry reflects a systemic authorization-boundary failure in a major production tenant rather than a public internet data leak.

Root cause

Software misconfiguration / insufficiently enforced ABAC between investigative teams (per oversight reporting)

References