Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Incidents

U.S. Insurers Hit by SIM-Swap Attack

February 12, 2024
Reading Time: 3 mins read
in Incidents
Two US insurance companies Hit by SIM-Swapping Hack

Two major US insurance companies, Washington National Insurance and Bankers Life, subsidiaries of the CNO Financial Group, have disclosed a significant data breach affecting thousands of individuals. The breach occurred when hackers executed SIM-swapping attacks in November 2023, allowing them to gain unauthorized access to sensitive personal information. This method involves fraudsters manipulating customer support staff at cellphone operators to gain control of victims’ phone numbers, bypassing two-factor authentication measures. As a result, hackers obtained access to personal data such as names, social security numbers, dates of birth, and policy numbers, putting approximately 66,000 individuals at risk of identity theft and fraud.

Washington National Insurance sent breach notification letters to 20,360 affected individuals, explaining that a SIM-swapping attack on a senior officer’s phone number facilitated the breach. Similarly, Bankers Life issued nearly identical notifications to 45,842 individuals. The scale of the breach underscores the severity of the security lapse and the potential consequences for those impacted. With cybercriminals increasingly exploiting SIM-swapping techniques to circumvent security measures, there is a pressing need for organizations to bolster their cybersecurity defenses and implement more robust authentication mechanisms.

The incident highlights the inherent vulnerabilities associated with SMS-based two-factor authentication and underscores the importance of adopting more secure authentication methods, such as time-based one-time passwords (TOTP) or hardware keys. Despite the known risks, many organizations continue to rely on less secure authentication practices, leaving themselves vulnerable to cyberattacks. To mitigate the risk of future breaches, organizations are advised to refrain from linking accounts to phone numbers and to implement additional layers of security on cellphone accounts to deter fraudulent activities.

In response to the breach, both insurance companies are urged to collaborate closely with their cellphone providers to implement enhanced security measures and prevent similar incidents from occurring in the future. Additionally, individuals are encouraged to remain vigilant and take proactive steps to protect their personal information, including monitoring their accounts for any suspicious activity and implementing stronger authentication measures wherever possible. This breach serves as a stark reminder of the evolving nature of cyber threats and the critical importance of robust cybersecurity practices in safeguarding sensitive data.

Reference:
  • US insurance firms sound alarm after 66,000 individuals impacted by SIM swap attack
  • breach notification letter

 

Tags: Bankers Lifecyber incidentsCyber Incidents 2024CybercrimeCybersecurityData BreachFebruary 2024InsuranceSIM-swapping attacksUSAWashingtonWashington National Insurance
ADVERTISEMENT

Related Posts

China Briefly Cuts Off Global Internet

China Briefly Cuts Off Global Internet

August 21, 2025
China Briefly Cuts Off Global Internet

Comet AI Browser Duped by Fake Shops

August 21, 2025
China Briefly Cuts Off Global Internet

Orange Belgium Data Breach Hits 850K

August 21, 2025
Intel Employee Data Exposure Flaw

NY Business Council Data Breach Hits 47K

August 20, 2025
Intel Employee Data Exposure Flaw

Ransomware Gang Hacks Inotiv Firm

August 20, 2025
Intel Employee Data Exposure Flaw

Intel Employee Data Exposure Flaw

August 20, 2025

Latest Alerts

QuirkyLoader Spreads RATs, Keyloggers

GenAI Used by Hackers for Phishing

Malicious Chrome VPN Steals Data

RingReaper Malware Hits Linux Servers

Mozilla Security Advisory AV25-529

Microsoft Issues Windows Fix Update

Subscribe to our newsletter

    Latest Incidents

    Comet AI Browser Duped by Fake Shops

    China Briefly Cuts Off Global Internet

    Orange Belgium Data Breach Hits 850K

    NY Business Council Data Breach Hits 47K

    Ransomware Gang Hacks Inotiv Firm

    Intel Employee Data Exposure Flaw

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial