INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).
Aflac subsidiary hacked exposing sensitive data
| 2026-06-30 11:12 CRITICAL HIGH DATA BREACH
Executive Summary
AI-generated
On June 25, 2026, Aflac Japan discovered an unauthorized third-party had unlawfully accessed certain of its systems between June 15 and June 25, 2026. The attackers gained access to some sensitive information stored on the affected systems, including policy and coverage details, personal information, and bank account information affecting approximately millions of customers in the U.S. and Japan. Aflac is now investigating the incident with external cybersecurity experts and has revealed that it was a breach of its Japan subsidiary's systems. The company has alerted Japanese authorities to the incident and will notify affected individuals of the data breach; no impact on Aflac's U.S. business systems was reported, as they were not accessed by the unauthorized third-party.
Technical Mitigations AI-generated
• Block or hunt for Scattered Spider (also tracked as 0ktapus , UNC3944 , Scatter Swine , Starfraud, and Muddled Libra) threat actors.
• Patch Aflac Japan's systems to address vulnerabilities exploited by the attackers.
• Use a breach and attack simulation test like Picus to identify weaknesses in SIEM and EDR rules.
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
Scattered SpiderScattered Spider
RansomHubRansomHubQilinQilin
Target & Sectors
NORTH_AMERICA
NORTH_AMERICA
financefinance
Incident Timeline
June 25, 2026
Threat actors tracked as Scattered Spider, also known as 0ktapus or UNC3944, used ransomware operations Qilin and RansomHub to target Aflac Japan's systems in June 2026.
Click on any entity below to view its context and source!
threat_actor
Scattered Spider
While Aflac didn't attribute last year's breach to a specific threat group, the incident had all the signs of a Scattered Spider attack.
Scattered Spider
(also tracked as
0ktapus
,
UNC3944
,
Scatter Swine
, Starfraud, and
Muddled Libra
) was also behind breaches at
Erie Insurance
and Philadelphia Insurance Companies (PHLY)
,
part of the same wave of attacks.
2026/06/30
Threat actors gained access to Aflac Japan's systems earlier this month, resulting in the theft of personal and bank account information.
Click on any entity below to view its context and source!
victims
500 company
Aflac (short for American Family Life Assurance Company) is a Fortune 500 company and the largest supplemental insurance provider in the United States, serving millions of customers in the U.S. and Japan.
Tactical Metrics
Metrics
victims
500
Company
Click for context!
Aflac (short for American Family Life Assurance Company) is a Fortune 500 company and the largest supplemental insurance provider in the United States, serving millions of customers in the U.S. and Japan.
Intelligence Sources
BleepingComputer
2026-06-30
Insurance giant Aflac discloses data breach after subsidiary hack
BleepingComputer
Unpublish from Social Media?
Are you sure you want to delete this podcast video from all synchronized social networks (YouTube, Facebook, Threads)?
Important:
Due to Meta API restrictions, Instagram Reels cannot be deleted automatically via API by third-party apps.
View Profile to Delete Manually
View Profile to Delete Manually
Tactical Intelligence
Report Intelligence Issue
Podcast Options
Generate
Incident Version History
CURRENT VERSION
Last Updated: 2026-10-07T06:26
Comprehensive Tactical Telemetry
Highly Correlated Entities
18x
organisation
Identified Entity
American Family Life Assurance Company
entity
6x
timeline
Temporal Reference
June 30, 2026
date
3x
target region
Target Country
Japan
country
2x
tactic
Cyber Operation Type
Data Breach
tactic
2x
malware
Malware Payload
Qilin
tool
2x
general metric
%
54
%
Contextual Telemetry
Context Block
4 METRICS
victims
Company
500
company
source region
Origin Country
Japan
country
attribution
Attributing Entity
the Japan Financial Services Agency
authority
threat actor
APT Group
Scattered Spider
actor
Click on any entity below to view its context in the main text!
Selective Unpublish
Selecciona las redes de las que quieres eliminar esta publicación. El sistema intentará borrar el post real de la API y limpiará la base de datos para que puedas volver a lanzarlo.
By navigating this website, you accept the use of strictly necessary technical cookies for session security and basic platform functionality. We do not use tracking or advertising cookies.
Read our Privacy Policy.