Personal Information Exposed in Apollo Global Data Breach

Personal information has been compromised in a data breach affecting private equity giant Apollo Global Management. The company revealed that hackers gained access to its cloud platforms through a social engineering attack, potentially exposing sensitive details such as names, contact information, and Social Security numbers.

The incident occurred between July 6 and 10, with an ongoing investigation yet to determine the full extent of the breach. However, it’s clear that Apollo is not alone in being targeted by this particular group. Researchers have linked the attack to a cybercrime operation known as UNC6671 and BlackFile, which has been using IT helpdesk-themed vishing attacks to target organizations across North America, Australia, and the UK.

BlackFile’s modus operandi involves tricking employees into divulging sensitive information through phishing emails or phone calls. These tactics have proven effective in infiltrating high-profile targets, including several private equity firms. Apollo’s breach is the only confirmed data compromise among those targeted by BlackFile, although some organizations have reported detecting suspicious activity without evidence of theft.

Apollo’s cloud platforms were accessed between July 6 and 10, with hackers potentially gaining access to sensitive personal information during this period. The company has assured affected individuals that it found no indication that their compromised details had been made public or used for malicious purposes. Nevertheless, Apollo is offering identity protection and credit monitoring services as a precautionary measure.

This data breach serves as a stark reminder of the growing threat posed by sophisticated cybercrime groups. BlackFile’s success in infiltrating high-profile targets raises concerns about the effectiveness of cybersecurity measures at these organizations. The group’s ability to secure millions of dollars in ransom payments through Google Threat Intelligence Group (GTIG) highlights its capabilities.

The Apollo breach is a wake-up call for organizations across various sectors, emphasizing the importance of robust security protocols and employee education. In light of this incident, we urge readers to remain vigilant about potential phishing attempts and social engineering tactics used by hackers to gain access to sensitive systems. This includes being cautious when receiving unsolicited phone calls or emails requesting sensitive information.

In conclusion, the Apollo Global Management data breach serves as a stark reminder of the ongoing threat posed by sophisticated cybercrime groups like BlackFile. As cybersecurity professionals continue to grapple with the evolving landscape of threats, it’s essential that organizations prioritize robust security protocols and employee education to mitigate these risks.


Source: SecurityWeek — 2026-08-24