AXA suffers major ransomware attack ID theft


French multinational insurance firm AXA has been struck by a ransomware attack days after the company announced a change in its policy to stop reimbursing ransom payments for cybercrime victims in its homeland.
The Financial Times pins the attack on the Avaddon ransomware group, which claims to have stolen three terabytes of sensitive customer data, including screenshots of IDs, bank details, and confidential medical records.
AXA has acknowledged the attack, which it says was directed at its Asia Assistance division, as well as affecting IT operations in Thailand, Malaysia, Hong Kong and the Philippines.
We’re looking at how our readers use VPN for a forthcoming in-depth report. We’d love to hear your thoughts in the survey below. It won’t take more than 60 seconds of your time.
The company told BleepingComputer that it had informed regulators and business partners of the attack and in response has also set up a dedicated task force with external forensic experts to investigate the incident.
Paying ransom debate
The attack on AXA follows a similar ransomware campaign against Colonial Pipelines, which operates one of the largest fuel pipelines in the US.
Even as Colonial paid the ransom to regain control of its network, it reignited the debate over giving in to the demands of cyber criminals. The US administration and security agencies advise against paying extortion fees, but there is currently no law that prevents victims paying the ransom.
Cyber insurance policies cover the cost of the ransom along with other associated costs incurred due to the downtime. A section of cybersecurity experts feel that this protection makes companies give in to the demands of the attacks, which further emboldens them to launch similar attacks against other similarly protected targets.
In a major announcement last week, AXA said that it would suspend the writing of cyber insurance policies for its French customers that refund the cost of ransom payments.
While the attack on AXA’s Asian division is seen as a direct result of its newly announced policy, Financial Times leverages on an anonymous individual who it claims is familiar with the matter as saying that the ransomware attack predates the policy change.
AXA hasn’t disclosed the date of the attack, nor the amount of the ransom demanded.
Via BleepingComputer
French multinational insurance firm AXA has been struck by a ransomware attack days after the company announced a change in its policy to stop reimbursing ransom payments for cybercrime victims in its homeland. The Financial Times pins the attack on the Avaddon ransomware group, which claims to have stolen three…
Recent Posts
- With the Humane AI Pin now dead, what does the Rabbit R1 need to do to survive?
- One of the best AI video generators is now on the iPhone – here’s what you need to know about Pika’s new app
- Apple’s C1 chip could be a big deal for iPhones – here’s why
- Rabbit shows off the AI agent it should have launched with
- Instagram wants you to do more with DMs than just slide into someone else’s
Archives
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022
- June 2022
- May 2022
- April 2022
- March 2022
- February 2022
- January 2022
- December 2021
- November 2021
- October 2021
- September 2021
- August 2021
- July 2021
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- July 2020
- June 2020
- May 2020
- April 2020
- March 2020
- February 2020
- January 2020
- December 2019
- November 2019
- September 2018
- October 2017
- December 2011
- August 2010