- Landmark Admin suffered a ransomware -attack in May 2024
- It was originally believed that about 800,000 people were affected
- New study determined more than 1.6 million victims
More than 1.6 million people are now believed to have been affected by cyberattack in May 2024 on Landmark Admin, twice as many as originally thought.
The company confirmed the news in an updated report submitted to the Office of Maine Attorney General.
“The forensic study determined that data was encrypted and ex -filtered from Landmark’s system,” the company said. “However, there was insufficient documentation available to identify which files had been compromised. The unauthorized activity took place between May 13, 2024 and June 17, 2024.”
Ransomware -attack
Landmark Admin is a third -party administrator (TPA) who specializes in administrative support services for life insurance and annuity companies.
At the end of October 2024, the company reported that he was suffering a serious ransomware attack, where threat actors also stole sensitive customer data, with the attack allegedly working for a ransomware operator called Abyss.
After the violation, Landmark Admin closed its IT systems and remote access to its network to contain the effects and brought in third-party security experts who found that the personal information of 806,519 people had been stolen.
In a notification of data violation sent to affected customers, Landmark Admin said that the stolen information included people’s full names, addresses, social security numbers, tax identification numbers, driver’s license numbers, state-issued ID card numbers, passport numbers, financial account numbers, medical information, birth dates, birth insurance policy numbers and the annuity of life.
The information stolen varied from individual to individual, and as the stolen information is very sensitive, users were advised to be extra vigilant for potential phishing attacks, social engineering or possible thread fraud.
At the time of the violation, Landmark Credit Monitoring and Identity Theft Protection Services offered through IDX, including 12 months of credit and Cybscan monitoring, a $ 1,000,000 insurance allowance policy and fully managed ID -Theft -Recovery Services.
Via Bleeping computer