Government Contractor Opexus Hit with Class Action Lawsuit Over February 2025 Data Breach
By Olivia DeRicco, ClassAction.org, Mar. 16, 2026
Opexus, formerly known as AINS, has been hit with a proposed class action lawsuit alleging that the government technology contractor failed to prevent a data breach in which two former employees were able to access and delete highly sensitive government and third-party information.
The 54-page data breach lawsuit asserts that Opexus, which operates platforms for processing federal government records and claims to handle sensitive data for nearly every U.S. federal agency, failed to implement reasonable cybersecurity measures or use even the “most basic” personnel screening measures to protect confidential government and sensitive personal information from a “catastrophic” data breach.
According to the case, Opexus experienced a data breach in February 2025 when two former employees, twin brothers who had been previously prosecuted and convicted by the United States government for federal hacking and wire-fraud offenses before being hired by Opexus, used insider privileges to extract, delete and corrupt databases storing government records, including records related to Freedom of Information Act (FOIA) requests, enforcement actions, audits and investigations.
Read more here.
[Thanks to Michael Sarich, former FOIA Director at the Dep’t of Veterans Affairs, for bringing this story to our attention]