The data breach at Allianz Life resulted in the exposure of personal information of most of its 1.4 million customers through a social engineering attack on a third-party CRM system. The threat was linked to the ShinyHunters group, known for high-profile breaches and extortion attempts involving Salesforce data loader exploits. #ShinyHunters #SalesforceDataLoader
Keypoints
- Allianz Lifeβs customer data was compromised through a third-party cloud-based CRM system.
- The attack involved social engineering techniques to access personally identifiable information.
- Authorities have confirmed no evidence of system or policy administration system access.
- ShinyHunters, a notorious extortion group, is believed to be responsible for the breach.
- The breach highlights ongoing risks posed by social engineering and data exfiltration via Salesforce.