• News/
  • https://www.bleepingcomputer.com/news/security/fintech-giant-finastra-notifies-victims-of-october-data-breach/

Fintech giant Finastra notifies victims of October data breach

BleepingComputer
·
Sergiu Gatlan
·
Published Feb 17, 2025
·
Updated

Financial technology giant Finastra is notifying victims of a data breach after their personal information was stolen by unknown attackers who first breached its systems in October 2024. London-based Finastra provides financial services software applications to more than 8,100 financial institutions across 130 countries, including 45 of the world's top 50 banks. As the company warned in breach notification letters sent to those impacted by the breach, the security incident was first detected on November 7 after Finastra identified malicious activity on some of its systems. "Our investigation revealed that an unauthorized third party accessed a Secure File Transfer Platform (SFTP) at various times between October 31, 2024 and November 8, 2024. Findings from the investigation indicate that on October 31, 2024, the unauthorized third party obtained certain files from the SFTP," the fintech giant said. "Finastra has no indication the unauthorized third party further copied, retained, or shared any of the data. We have no reason to suspect your information has or will be misused. As a result, we believe the risk to individuals whose personal data was involved is low." While Finastra has yet to share the number of individuals affected by the data breach and the nature of the exposed data (besides victims' names), the company started sending breach notification letters last week to at least 65 people in the state whose financial account information was stolen (according to filings ...

Read full article

Affected Software

4 affected components
finastra Secure File Transfer Platform
Pulse Secure VPN
Citrix ADC
finastra Secure File Transfer Platform
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the main topic of this article?

The main topic of this article is the notification of a data breach by Finastra, a financial technology company, affecting personal information of its clients.

2

What security implications are discussed in the article?

The article discusses the risks associated with the theft of personal information from Finastra's systems and the potential impact on affected individuals.

3

What products or software from Finastra are affected?

The affected product mentioned in the article is the Finastra Secure File Transfer Platform.

4

When did the data breach occur?

The data breach occurred in October 2024.

5

Who are the victims of the Finastra data breach?

The victims are clients whose personal information was stolen during the data breach.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203