INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).

Aflac subsidiary hacked exposing sensitive data

| 2026-06-30 11:12 CRITICAL HIGH DATA BREACH
Executive Summary
AI-generated
On June 25, 2026, Aflac Japan discovered an unauthorized third-party had unlawfully accessed certain of its systems between June 15 and June 25, 2026. The attackers gained access to some sensitive information stored on the affected systems, including policy and coverage details, personal information, and bank account information affecting approximately millions of customers in the U.S. and Japan. Aflac is now investigating the incident with external cybersecurity experts and has revealed that it was a breach of its Japan subsidiary's systems. The company has alerted Japanese authorities to the incident and will notify affected individuals of the data breach; no impact on Aflac's U.S. business systems was reported, as they were not accessed by the unauthorized third-party.
Technical Mitigations AI-generated
• Block or hunt for Scattered Spider (also tracked as 0ktapus , UNC3944 , Scatter Swine , Starfraud, and Muddled Libra) threat actors. • Patch Aflac Japan's systems to address vulnerabilities exploited by the attackers. • Use a breach and attack simulation test like Picus to identify weaknesses in SIEM and EDR rules.
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
Scattered SpiderScattered Spider RansomHubRansomHubQilinQilin
Target & Sectors
NORTH_AMERICA NORTH_AMERICA financefinance
Incident Timeline
‎June 25, 2026
Threat actors tracked as Scattered Spider, also known as 0ktapus or UNC3944, used ransomware operations Qilin and RansomHub to target Aflac Japan's systems in June 2026.
threat_actor Scattered Spider
‎2026/06/30
Threat actors gained access to Aflac Japan's systems earlier this month, resulting in the theft of personal and bank account information.
victims 500 company
Tactical Metrics
Metrics
victims
500
Company
Intelligence Sources
BleepingComputer 2026-06-30