World

MOVEit hack claims Calpers and Genworth as millions more victims impacted

2023.06.23 20:48


© Reuters. A sign at California Public Employees’ Retirement System (CalPERS) headquarters in Sacramento, California, U.S. February 14, 2017. REUTERS/Max Whittaker

(Reuters) -The number of victims of the MOVEit hack grew by several million on Thursday after the biggest U.S. pension fund, Calpers, and insurer Genworth Financial (NYSE:) said personal information of their members and customers had been compromised.

Both said a third-party vendor, PBI Research Services, was affected in a data theft hack, providing a path for the hackers to then steal customer data. PBI could not be reached for comment.

Calpers said on June 6, 2023, PBI told them of a “vulnerability” in their MOVEit Transfer software that allowed hackers to download “our data”. The fund said approximately 769,000 members, that include retirees and beneficiaries, were impacted.

The MOVEit software is widely-used by organizations around the world to share sensitive data.

Genworth Financial was harder hit, saying personal information of nearly 2.5 million to 2.7 million of its customers was breached.

“The personal information of a significant number of insurance policyholders or other customers of its life insurance businesses was unlawfully accessed,” Genworth said.

The hack did not impact Genworth’s information systems and there has been no “material interruption” of its business operations, the company said.

Genworth also does not use the MOVEit software application, a spokesperson for the company said.

From U.S. government departments to the UK’s telecom regulator and energy giant Shell (LON:), a range of victims have emerged since Burlington, Massachusetts-based Progress Software (NASDAQ:) found the security flaw in its MOVEit Transfer product last month.

The insurer said it is working to ensure “protection services” are provided to the impacted individuals, according to a regulatory filing.

Data taken from Calpers included members’ first and last name, date of birth and social security number. It serves more than 2 million members in its retirement system.

The MOVEit hack has hit several state and federal agencies. Last week, the U.S. Department of Energy got ransom requests from the Russia-linked extortion group Cl0p at both its nuclear waste facility and scientific education facility that were recently hit in a global hacking campaign.

Data was compromised at the two DOE entities after hackers breached their systems through a security flaw in MOVEit Transfer.

The wide-ranging impact of the hack shows how even the most security-minded federal agencies are struggling to defend against ransomware attacks. Ransomware gangs typically scour for such widely-used tools.

Source link

Related Articles

Back to top button
bitcoin
Bitcoin (BTC) $ 76,461.49 0.47%
ethereum
Ethereum (ETH) $ 2,988.72 2.52%
tether
Tether (USDT) $ 1.00 0.01%
solana
Solana (SOL) $ 199.80 0.23%
bnb
BNB (BNB) $ 615.93 1.79%
usd-coin
USDC (USDC) $ 0.999519 0.04%
xrp
XRP (XRP) $ 0.551408 0.91%
dogecoin
Dogecoin (DOGE) $ 0.201769 3.56%
staked-ether
Lido Staked Ether (STETH) $ 2,983.15 2.29%
cardano
Cardano (ADA) $ 0.438977 5.47%
tron
TRON (TRX) $ 0.16035 0.14%
wrapped-steth
Wrapped stETH (WSTETH) $ 3,519.29 2.16%
the-open-network
Toncoin (TON) $ 4.93 0.43%
avalanche-2
Avalanche (AVAX) $ 29.33 5.29%
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 76,100.39 0.18%
shiba-inu
Shiba Inu (SHIB) $ 0.000019 1.55%
weth
WETH (WETH) $ 2,986.77 2.44%
chainlink
Chainlink (LINK) $ 13.50 5.88%
bitcoin-cash
Bitcoin Cash (BCH) $ 375.87 1.55%
sui
Sui (SUI) $ 2.29 2.09%
polkadot
Polkadot (DOT) $ 4.32 2.93%
leo-token
LEO Token (LEO) $ 6.42 2.48%
usds
USDS (USDS) $ 0.994336 0.74%
wrapped-eeth
Wrapped eETH (WEETH) $ 3,137.16 2.42%
litecoin
Litecoin (LTC) $ 72.66 0.34%
uniswap
Uniswap (UNI) $ 8.81 0.94%
near
NEAR Protocol (NEAR) $ 4.30 0.45%
aptos
Aptos (APT) $ 9.76 0.68%
pepe
Pepe (PEPE) $ 0.000011 2.55%
internet-computer
Internet Computer (ICP) $ 8.42 7.05%
bittensor
Bittensor (TAO) $ 505.28 1.72%
fetch-ai
Artificial Superintelligence Alliance (FET) $ 1.40 1.90%
dai
Dai (DAI) $ 0.999612 0.09%
ethereum-classic
Ethereum Classic (ETC) $ 20.41 1.06%
monero
Monero (XMR) $ 163.59 0.34%
stellar
Stellar (XLM) $ 0.101403 0.73%
polygon-ecosystem-token
POL (ex-MATIC) (POL) $ 0.38565 10.82%
ethena-usde
Ethena USDe (USDE) $ 1.00 0.13%
crypto-com-chain
Cronos (CRO) $ 0.106674 14.98%
whitebit
WhiteBIT Coin (WBT) $ 19.89 1.15%
kaspa
Kaspa (KAS) $ 0.112109 3.18%
aave
Aave (AAVE) $ 182.96 0.57%
blockstack
Stacks (STX) $ 1.64 3.16%
okb
OKB (OKB) $ 39.88 1.51%
arbitrum
Arbitrum (ARB) $ 0.595968 2.01%
first-digital-usd
First Digital USD (FDUSD) $ 1.00 0.10%
dogwifcoin
dogwifhat (WIF) $ 2.34 4.89%
filecoin
Filecoin (FIL) $ 3.87 2.27%
mantle
Mantle (MNT) $ 0.674258 2.19%
injective-protocol
Injective (INJ) $ 22.34 0.40%