- Allianz Life recently confirmed cyber attack
- The criminals stole data on around 1.4 million customers
- Among the stolen data are names, addresses and SSNS
The stolen information in the recent cyber attack on the Insurance Giant Allianz Life included the complete names of the people, the postal addresses, the birth dates and, particularly worrying, the Social Security numbers (SSN), the company confirmed.
Allianz Life has presented new forms to the Office of the Attorney General in Texas and Massachusetts, in which he confirmed what type of data was taken when a threat actor agreed to a CRM system based on the third -party cloud that the company uses.
After discovering the intrusion, the company took measures to contain it and notified the FBI. Until now, there is no evidence that the company’s network or other systems were accessed, it was added.
Abusing SSNS
Talking with TechcrunchA spokesman for Allianz Life said the company will begin to notify the affected people on August 1.
“The letters will offer specific information relevant to affected people, including the type of data that may have been affected,” he said.
The SSN are a centerpiece of personal identity in the US. And unlock access to a wide range of services and records.
They allow cybercriminals to go through victims, which potentially open bank accounts in their name, request loans and credit cards, or accumulate debts.
They can also make false tax statements, obtain access to medical treatment or prescribed medications and even get a job illegally, which could cause problems to victims during the background verifications.
Finally, criminals can use SSN to request various social security benefits, unemployment or well -being compensation.
Stay protected
The attack is particularly worrying, since these records could contain more than enough information for computer pirates to launch highly personalized and successful phishing campaigns, which leads to identity theft, cable fraud and even ransomware attacks.
If you are worried that you have been caught in the incident, do not worry, there are a number of methods to find out. Haveibeenpwned? It is probably the best resource to verify if your data has been affected, offering a decrease in each large cybercrime incident of recent years.
And if you keep the passwords on a Google account, you can use the Google password verification tool to see if any has committed, or register in one of the best password administrator options that we have rounded to make sure that its session is protected.
Through Techcrunch