Financial technology giant Finastra is notifying victims of a data breach after their personal information was stolen by unknown attackers who first breached its systems in October 2024. London-based Finastra provides financial services software applications to more than 8,100 financial institutions across 130 countries, including 45 of the world's top 50 banks. As the company warned in breach notification letters sent to those impacted by the breach, the security incident was first detected on November 7 after Finastra identified malicious activity on some of its systems. "Our investigation revealed that an unauthorized third party accessed a Secure File Transfer Platform (SFTP) at various times between October 31, 2024 and November 8, 2024. Findings from the investigation indicate that on October 31, 2024, the unauthorized third party obtained certain files from the SFTP," the fintech giant said. "Finastra has no indication the unauthorized third party further copied, retained, or shared any of the data. We have no reason to suspect your information has or will be misused. As a result, we believe the risk to individuals whose personal data was involved is low." While Finastra has yet to share the number of individuals affected by the data breach and the nature of the exposed data (besides victims' names), the company started sending breach notification letters last week to at least 65 people in the state whose financial account information was stolen (according to filings ...
Fintech giant Finastra notifies victims of October data breach
BleepingComputer
·Sergiu Gatlan
·Published Feb 17, 2025
·Updated
Affected Software
4 affected components
finastra Secure File Transfer Platform
Pulse Secure VPN
Citrix ADC
finastra Secure File Transfer Platform
Frequently Asked Questions
1
What is the main topic of this article?
The main topic of this article is the notification of a data breach by Finastra, a financial technology company, affecting personal information of its clients.
2
What security implications are discussed in the article?
The article discusses the risks associated with the theft of personal information from Finastra's systems and the potential impact on affected individuals.
3
What products or software from Finastra are affected?
The affected product mentioned in the article is the Finastra Secure File Transfer Platform.
4
When did the data breach occur?
The data breach occurred in October 2024.
5
Who are the victims of the Finastra data breach?
The victims are clients whose personal information was stolen during the data breach.