We review vendors based on rigorous testing and research but also take into account your feedback and our affiliate commission with providers. Some providers are owned by our parent company.
Learn more
vpnMentor was established in 2014 to review VPN services and cover privacy-related stories. Today, our team of hundreds of cybersecurity researchers, writers, and editors continues to help readers fight for their online freedom in partnership with Kape Technologies PLC, which also owns the following products: ExpressVPN, CyberGhost, and Private Internet Access which may be ranked and reviewed on this website. The reviews published on vpnMentor are believed to be accurate as of the date of each article, and written according to our strict reviewing standards that prioritize professional and honest examination of the reviewer, taking into account the technical capabilities and qualities of the product together with its commercial value for users. The rankings and reviews we publish may also take into consideration the common ownership mentioned above, and affiliate commissions we earn for purchases through links on our website. We do not review all VPN providers and information is believed to be accurate as of the date of each article.
Advertising Disclosure

vpnMentor was established in 2014 to review VPN services and cover privacy-related stories. Today, our team of hundreds of cybersecurity researchers, writers, and editors continues to help readers fight for their online freedom in partnership with Kape Technologies PLC, which also owns the following products: ExpressVPN, CyberGhost, and Private Internet Access which may be ranked and reviewed on this website. The reviews published on vpnMentor are believed to be accurate as of the date of each article, and written according to our strict reviewing standards that prioritize professional and honest examination of the reviewer, taking into account the technical capabilities and qualities of the product together with its commercial value for users. The rankings and reviews we publish may also take into consideration the common ownership mentioned above, and affiliate commissions we earn for purchases through links on our website. We do not review all VPN providers and information is believed to be accurate as of the date of each article.

Millions at Risk as MoneyGram Hackers Steal Sensitive Data

Millions at Risk as MoneyGram Hackers Steal Sensitive Data
Husain Parvez Published on 14th October 2024 Cybersecurity Researcher

Money transfer giant MoneyGram has confirmed a major data breach in which hackers stole sensitive personal and transaction information of customers following a cyberattack between September 20 and 22, 2024. The attack, which resulted in a temporary system outage, has left customers vulnerable to potential fraud and identity theft.

According to a statement released by MoneyGram, the cyberattack saw hackers gain unauthorized access to a wide range of personal data, including names, contact details, dates of birth, and national identification numbers. The stolen data also includes financial information such as transaction records and bank account numbers. In some cases, Social Security numbers and government-issued IDs, such as driver’s licenses, were also compromised. "The types of stolen data will vary by individual," the company noted in its statement.

The breach was first reported by TechCrunch, which noted that MoneyGram’s systems were offline for about a week following the incident. This affected not only the company’s own services but also those of its global partners, including the Bank of Jamaica and the UK’s Post Office, leaving millions of customers unable to send or receive money.

MoneyGram has since acknowledged that the breach affected a significant number of its customers, but the exact figure is yet to be determined. Malwarebytes reported that the breach was discovered on September 27, five days after the hackers had already accessed the data.

The company is now working with authorities to assess the scope of the attack and investigate the full extent of the damage. "We are in the early stages of our investigation," a MoneyGram spokesperson said, adding that the company has already notified the necessary regulators, including the UK’s Information Commissioner’s Office (ICO).

The incident has sparked concerns over the potential for identity theft and fraud, especially given the wide range of data stolen. To mitigate the risks, MoneyGram has urged affected customers to monitor their financial accounts and credit reports closely. The company is also offering two years of free identity protection and credit monitoring services to US customers affected by the breach.

MoneyGram has not commented on the specific vulnerabilities that led to the breach but assured customers that it is taking all necessary steps to strengthen its security. For now, customers are being advised to take proactive steps, such as changing their passwords and enabling two-factor authentication, to protect themselves from further harm.

About the Author

Husain Parvez is a Cybersecurity Researcher and News Writer at vpnMentor, focusing on VPN reviews, detailed how-to guides, and hands-on tutorials. Husain is also a part of the vpnMentor Cybersecurity News bulletin and loves covering the latest events in cyberspace and data privacy.

Please, comment on how to improve this article. Your feedback matters!

Leave a comment

Sorry, links are not allowed in this field!

Name should contain at least 3 letters

The field content should not exceed 80 letters

Sorry, links are not allowed in this field!

Please enter a valid email address