UNITED STATES NEWS

2.5M Genworth policyholders and 769K retired California workers and beneficiaries affected by hack

Jun 22, 2023, 1:12 PM | Updated: 5:26 pm

SACRAMENTO, Calif. (AP) — The country’s largest public pension fund says the personal information of about 769,000 retired California employees and other beneficiaries — including Social Security numbers — was among data stolen by Russian cybercriminals in the breach of a popular file-transfer application.

It blamed the breach on a third-party vendor that verifies deaths. The same vendor, PBI Research Services/Berwyn Group, also lost the personal data of at least 2.5 million Genworth Financial policyholders, including Social Security numbers, to the same criminal gang, according to the Fortune 500 insurer.

The California Public Employees Retirement system said they were offering affected members two years of free credit monitoring. Genworth said in a statement posted online it would offer credit monitoring and ID theft protection.

The breach of the MOVEit file-transfer program, discovered last month, is estimated by cybersecurity experts to have compromised hundreds of organizations globally. Confirmed victims include the U.S. Department of Energy and several other federal agencies, more than 9 million motorists in Oregon and Louisiana, Johns Hopkins University, Ernst & Young, the BBC and British Airways.

The criminal gang behind the hack, known as Cl0p, is extorting victims, threatening to dump their data online if they don’t pay up.

Genworth disclosed the hack Thursday of the MOVEit instance managed by PBI Research in a filing with the Securities and Exchange Commission.

Minnesota-based PBI Research did not immediately return a phone message seeking details on which of its other customers may have been affected. The company’s website lists the Nevada, New Jersey and Tennessee public pension funds as among customers of its mortality verification service.

“This external breach of information is inexcusable,” CalPERS CEO Marcie Frost said in a news release. “Our members deserve better. As soon as we learned about what happened, we took fast action to protect our members’ financial interests, as well as steps to ensure long-term protections.”

CalPERS had more than $442 billion in assets as of Dec. 31 and about 1.5 million members.

Security experts say such so-called supply-chain hacks expose an uncomfortable truth about the software organizations use: Network security is only as strong as the weakest digital link in the ecosystem.

The stolen data included names, birth dates and Social Security numbers — and might also include names of spouses or domestic partners and children, officials said. CalPERS planned to send letters Thursday to those affected by the breach.

CalPERS said PBI notified it of the breach on June 6, the same day cybersecurity firms began to issue reports on the breach of MOVEit, whose maker, Ipswitch, is owned by Progress Software.

PBI reported the breach to federal law enforcement, and CalPERS placed “additional safeguards” to protect the information of retirees who use the member benefits website and visit a regional office, officials said. The agency did not elaborate on those safeguards, citing security reasons.

___

This story has been corrected to reflect that Genworth disclosed the hack on Thursday, not June 16.

___

Bajak reported from Boston.

___

Sophie Austin is a corps member for the Associated Press/Report for America Statehouse News Initiative. Report for America is a nonprofit national service program that places journalists in local newsrooms to report on undercovered issues. Follow Austin on Twitter: @sophieadanna

United States News

FILE - Protesters shout before a speaking engagement by Ben Shapiro on the campus of the University...

Associated Press

Few Americans say conservatives can speak freely on college campuses, AP-NORC/UChicago poll shows

WASHINGTON (AP) — Americans view college campuses as far friendlier to liberals than to conservatives when it comes to free speech, with adults across the political spectrum seeing less tolerance for those on the right, according to a new poll. Overall, 47% of adults say liberals have “a lot” of freedom to express their views […]

8 hours ago

Fencer Kirsten Hawkes poses for a portrait at a fencing studio Tuesday, Sept. 12, 2023, in San Dieg...

Associated Press

Forced kiss claim leads to ‘helplessness’ for accuser who turned to Olympics abuse-fighting agency

DENVER (AP) — When Kirsten Hawkes, a one-time elite fencer, reached out to her childhood coach for advice about starting her own fencing club, their meeting turned awkward right away. It began, she said, with an unwanted kiss on the lips when the two met at a bar during a fencing tournament in Minneapolis last […]

8 hours ago

FILE - President Joe Biden and California Gov. Gavin Newsom wait for reporters to leave the room du...

Associated Press

California governor to name Laphonza Butler, former Kamala Harris adviser, to Feinstein Senate seat

LOS ANGELES (AP) — California Gov. Gavin Newsom will name Laphonza Butler, a Democratic strategist and adviser to Kamala Harris’ presidential campaign, to fill the vacant U.S. Senate seat held by the late Sen. Dianne Feinstein, a spokesman in his office said Sunday. In choosing Butler, Newsom fulfilled his pledge to appoint a Black woman […]

9 hours ago

File - The Southern University Human Jukebox marching band warms up before the 2023 National Battle...

Associated Press

Federal student loan payments are starting again. Here’s what you need to know

Federal student loan borrowers will need to start making payments again this month after a three-year-plus pause due to the pandemic.

9 hours ago

FILE - Former President Donald Trump speaks in Clinton Township, Mich., Wednesday, Sept. 27, 2023. ...

Associated Press

Donald Trump says he will be in courtroom for New York trial scrutinizing his business practices

NEW YORK (AP) — With control over some of his most prized real estate holdings in jeopardy, former President Donald Trump says he will make a rare, voluntary trip to court Monday for the start of a civil trial in a lawsuit that has already resulted in a judge ruling that he committed fraud in […]

10 hours ago

Associated Press

A woman who fled the Maui wildfire on foot has died after weeks in a hospital burn unit

HONOLULU (AP) — A woman who escaped a wildfire that destroyed Hawaii community by running through a burning field has died after spending more than seven weeks in a hospital burn unit. Laurie Allen died Friday at Straub Medical Center in Honolulu, according to a gofundme page set up for her and her husband, Perry […]

16 hours ago

Sponsored Articles

...

Ignite Digital

How to unlock the power of digital marketing for Phoenix businesses

All businesses around the Valley hopes to maximize their ROI with current customers and secure a greater market share in the digital sphere.

Sanderson Ford...

Sanderson Ford

Sanderson Ford congratulates D-backs’ on drive to great first half of 2023

The Arizona Diamondbacks just completed a red-hot first half of the major league season, and Sanderson Ford wants to send its congratulations to the ballclub.

...

OCD & Anxiety Treatment Center

5 mental health myths you didn’t know were made up

Helping individuals understand mental health diagnoses like obsessive compulsive spectrum disorder or generalized anxiety disorder isn’t always an easy undertaking. After all, our society tends to spread misconceptions about mental health like wildfire. This is why being mindful about how we talk about mental health is so important. We can either perpetuate misinformation about already […]

2.5M Genworth policyholders and 769K retired California workers and beneficiaries affected by hack