PrivacySignal
Breach

Insurance giant Aflac discloses data breach after subsidiary hack

BleepingComputer · · International · Data Breaches

Aflac has disclosed a data breach stemming from an attack on its Japan-based subsidiary, in which personal information and bank account details were stolen from affected individuals. The company has not publicly confirmed the full scope of the breach.

Why this matters: Bank account information is not a password you can reset. Once it is out, the exposure is real and lasting. The attack hit a subsidiary, which is a common weak point — large companies tend to harden the core and underfund the edges. If you are an Aflac policyholder in Japan, your financial details may now be in the hands of people who did not earn them. The broader issue is simple: insurers collect some of the most sensitive data that exists, and subsidiaries should be held to the same security standard as the parent.

Who should care: Cybersecurity · Privacy officers · Administrators

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

Related stories

Breach
DataBreaches.net · · International

NHS admits data breach by sending patient data via pagers

The NHS has acknowledged a data breach after a BBC investigation found that sensitive personal information about transplant patients — including names, dates of birth, and organ details — was routinely transmitted over an unencrypted pager network.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · Healthcare professionals · General readers · Policy

#breach#enforcement#healthcare#privacy Read original →
Breach
HIPAA Journal · · US Federal

Boston Healthcare for the Homeless Program Breach Affects At Least 185K State Residents

The Boston Healthcare for the Homeless Program has disclosed a data breach affecting at least 185,000 Massachusetts residents, according to a report that also notes breaches at Monongalia County General Hospital and other healthcare organizations.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
HIPAA Journal · · US Federal

Texas Hearing Institute Ransomware Attack Affects 30,000 Patients

Texas Hearing Institute disclosed a ransomware attack that compromised the protected health information of nearly 30,000 patients. The incident falls under HIPAA breach notification requirements, prompting the organization to go public with details of the cyberattack.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare#security Read original →
Breach
HIPAA Journal · · US Federal

Aesto Health Data Security Incident Affects Multiple Healthcare Provider Clients

Aesto Health, a healthcare technology company based in Birmingham, Alabama, has disclosed a data security incident that affected multiple healthcare provider clients. The breach was reported by The HIPAA Journal, though specific details about the number of patients affected or the nature of the compromised data have not been specified in available reporting.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →