Aflac Targeted in Coordinated Insurance Industry Cyberattack
On June 12, 2025, Aflac detected unauthorized activity on its U.S.
Key points
- Unauthorized activity detected on Aflac's U.S. network on June 12, 2025.
- Part of a broader cybercrime campaign targeting the insurance sector.
- Attack attributed to a sophisticated social-engineering method, likely by Scattered Spider.
Connected intelligence
Signal brief
Follow the organization, likely method and potential impact to explore connected Shadow Tier intelligence.
- Published
- Jun 12, 2025
- Updated
- Jun 26, 2026
- Confidence
- Medium
- Evidence
- 2 sources
Structured assessment
Signal analysis
This analysis groups the signal by industry, likely incident action and impacted security area.
Threat source
Watch exposure paths that could affect data, operations or third-party trust.
Business impact
- Impact area
- Unknown
Mentioned entities
Quick context
Questions about this signal
What happened in this signal?
On June 12, 2025, Aflac detected unauthorized activity on its U.S. network, part of a broader cybercrime campaign targeting the insurance sector. The breach, attributed to a sophisticated social-engineering attack likely by the Scattered Spider cybercrime group, was swiftly contained. Preliminary findings indicate potential exposure of sensitive data including claims details, health records, Social Security numbers, and personal information tied to customers, agents, and employees.
When was this signal reported?
Shadow Tier lists Jun 12, 2025 as the signal date.
Which organization is connected to this signal?
Aflac is the organization connected to this public signal.
Explore AflacWhich sector context is relevant?
This signal is connected to insurance cybersecurity intelligence.
Explore insurance cybersecurity intelligence