Apollo Global Management recently announced that it has been the target of a social engineering attack, compromising some of its valuable data. The financial giant reported this cybersecurity incident after an investigation revealed unauthorized access to its cloud platforms over several days in early July. This breach highlights the ongoing vulnerabilities faced by large firms amidst sophisticated cyber-attacks.
Apollo previously encountered similar incidents, but this breach appeared more severe due to the exposure of sensitive data such as names, contact details, and Social Security numbers. Previous defenses had involved regular security updates and consultancy with cybersecurity experts. Perhaps more striking now is the reinforced attention Apollo has placed on analyzing and mitigating threats through enhanced measures.
How Did the Breach Happen?
The specific attack method involved a social engineering approach, which the attackers leveraged to gain access. Such tactics often manipulate human behaviour to breach security systems by masquerading as trusted entities. The breach notification clarified the unauthorized access duration, stretching from July 6 to July 10.
What Actions Has Apollo Taken?
Once the breach was discovered, Apollo reported the incident to law enforcement and engaged external cybersecurity experts to handle the situation. According to Matthew Breitfelder, Global Head of Human Capital at Apollo, the company acted quickly to also elevate its security protocols and conducted a thorough investigation.
“Upon detecting the incident, we promptly notified law enforcement, engaged leading outside cybersecurity and forensic experts,” Breitfelder commented.
Although the investigation has not found evidence of the breached data being publicly disclosed or exploited for fraud, Apollo continues to work with cyber defense professionals to understand the extent of the breach. Current measures focus on preventing further vulnerability exploitation and solidifying their security posture.
“Similar to other financial services firms, Apollo recently experienced a social engineering incident,” Breitfelder added.
Parallel issues in the industry have been covered by Google (NASDAQ:GOOGL) Threat Intelligence Group and Mandiant, alongside publications about consistent targeting operations primarily focusing on financial firms. The FBI’s reports have also noted these ongoing threats, revealing tactics by fake IT support to execute data extortion.
Strengthened vigilance in the cybersecurity realm is critical, as highlighted by trends in financial crime reports that indicate an evolving landscape with adaptive fraud tactics. Fraudsters remain active, which prompts institutions to continuously adapt using new technologies and strategies. Companies like Apollo must advance their methods to hinder sophisticated attacks, ensuring sensitive data remains secure from potential breaches.

USDT
AAPL