{"id":23716,"date":"2024-01-15T06:10:04","date_gmt":"2024-01-15T14:10:04","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2024\/01\/15\/news-17446\/"},"modified":"2024-01-15T06:10:04","modified_gmt":"2024-01-15T14:10:04","slug":"news-17446","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2024\/01\/15\/news-17446\/","title":{"rendered":"Fidelity National Financial acknowledges data breach affecting 1.3 million customers"},"content":{"rendered":"\n<p>In November 2023, real estate services company Fidelity National Financial (FNF) got its systems knocked offline for a week after a cyberincident.<\/p>\n<p>As is often the case these days, it turns out that the cyberincident was very likely a ransomware attack that included a data breach. Ransomware operators typically steal data from the compromised systems to use as extra leverage against the victim. <\/p>\n<p>The attack on FNF was claimed by ransomware group ALPHV\/BlackCat on its leak site. ALPHV is typically in the top five most active ransomware gangs in our <a href=\"https:\/\/www.malwarebytes.com\/blog\/threat-intelligence\/2023\/12\/ransomware-review-december-2023\">monthly ransomware reviews<\/a> and is one of the most dangerous ransomware groups in the world.<\/p>\n<p>The listing on ALPHV\u2019s leak site has since been removed which might indicate that the ransom was paid. But it could also be another reason: In December 2023, the gang\u2019s infrastructure was taken down by law enforcement. Unfortunately <a href=\"https:\/\/www.malwarebytes.com\/blog\/ransomware\/2023\/12\/alphv-ransomware-gang-returns-sorta\">the gang did re-appear soon after<\/a>.<\/p>\n<p>In a form 8-K, FNF said it had notified applicable state attorneys general and regulators, and approximately 1.3 million potentially impacted consumers. Form 8-K is known as a \u201ccurrent report\u201d and it is the report that companies must file with the SEC to announce major events that shareholders should know about.<\/p>\n<p>The company has not so far specified the type of data that may have been stolen. FNF is providing credit monitoring and identity theft services to affected customers.<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-data-breach\">Data breach<\/h2>\n<p>There are some actions you can take if you are, or suspect you may have been, the&nbsp;<a href=\"https:\/\/www.malwarebytes.com\/blog\/personal\/2023\/09\/involved-in-a-data-breach-heres-what-you-need-to-know\">victim of a data breach<\/a>.<\/p>\n<ul>\n<li><strong>Check the vendor\u2019s advice.<\/strong>&nbsp;Every breach is different, so check with the vendor to find out what\u2019s happened, and follow any specific advice they offer.<\/li>\n<li><strong>Change your password.<\/strong>&nbsp;You can make a stolen password useless to thieves by changing it. Choose a&nbsp;<a href=\"https:\/\/www.malwarebytes.com\/computer\/how-to-create-a-strong-password\" target=\"_blank\" rel=\"noreferrer noopener\">strong password<\/a>&nbsp;that you don\u2019t use for anything else. Better yet, let a&nbsp;<a href=\"https:\/\/www.malwarebytes.com\/what-is-password-manager\" target=\"_blank\" rel=\"noreferrer noopener\">password manager<\/a>&nbsp;choose one for you.<\/li>\n<li><strong>Enable two-factor authentication (2FA).<\/strong>&nbsp;If you can, use a FIDO2-compliant hardware key, laptop or phone as your second factor. Some forms of&nbsp;<a href=\"https:\/\/www.malwarebytes.com\/glossary\/multi-factor-authentication-mfa\" target=\"_blank\" rel=\"noreferrer noopener\">two-factor authentication (2FA)<\/a>&nbsp;can be phished just as easily as a password. 2FA that relies on a FIDO2 device can\u2019t be phished.<\/li>\n<li><strong>Watch out for fake vendors.<\/strong>&nbsp;The thieves may contact you posing as the vendor. Check the vendor website to see if they are contacting victims, and verify any contacts using a different communication channel.<\/li>\n<li><strong>Take your time.<\/strong>&nbsp;Phishing attacks often impersonate people or brands you know, and use themes that require urgent attention, such as missed deliveries, account suspensions, and security alerts.<\/li>\n<li><strong>Set up identity monitoring.<\/strong>\u00a0<a href=\"https:\/\/www.malwarebytes.com\/identity-theft-protection\">Identity monitoring<\/a>\u00a0alerts you if your personal information is found being traded illegally online, and helps you recover after.<\/li>\n<\/ul>\n<hr class=\"wp-block-separator has-alpha-channel-opacity is-style-wide\" \/>\n<p><strong>We don&#8217;t just report on threats &#8211; we help safeguard your entire digital identit<\/strong>y<\/p>\n<p>Cybersecurity risks should never spread beyond a headline. Protect your\u2014and your family&#8217;s\u2014personal information by using\u00a0<a href=\"https:\/\/www.malwarebytes.com\/identity-theft-protection\" target=\"_blank\" rel=\"noreferrer noopener\">Malwarebytes Identity Theft Protection<\/a>.<\/p>\n<p><a href=\"https:\/\/www.malwarebytes.com\/blog\/news\/2024\/01\/fidelity-national-financial-acknowledges-data-breach-affecting-1-3-million-customers\" target=\"bwo\" >https:\/\/blog.malwarebytes.com\/feed\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p> Fidelity National Financial has suffered a ransomware attack and resulting data breach which involved 1.3 million of its customers&#8217; data. <\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10488,10378],"tags":[26819,11172,30712,30713,30714,32,3765],"class_list":["post-23716","post","type-post","status-publish","format-standard","hentry","category-malwarebytes","category-security","tag-alphv","tag-data-breach","tag-fidelity","tag-fnf","tag-form-8-k","tag-news","tag-ransomware"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/23716","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=23716"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/23716\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=23716"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=23716"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=23716"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}