Last updated 2 weeks ago
American insurance giant Aflac disclosed a data breach affecting its Japan subsidiary. The breach was publicly reported on June 30, 2026, though the discovery date is not specified. The number of affected records or individuals has not been disclosed.
Attackers gained unauthorized access to the subsidiary's systems and exfiltrated personal and bank account information. The specific initial access vector and exploitation techniques have not been detailed, and no threat actor has been attributed.
No further post-incident details such as regulatory actions, litigation, or remediation milestones have been reported.
Attackers breached Japan subsidiary's systems and stole personal and bank account information.
Aflac's breach underscores the need for robust access controls and monitoring across international subsidiaries. The theft of personal and bank account data suggests insufficient network segmentation and inadequate detection of lateral movement. Organizations should enforce least-privilege access and deploy anomaly detection to identify unauthorized data exfiltration.
Sign in to join the discussion.
Company
Industry
Location
Disclosed
Records Affected
Attack Vector