Financial Giant Apollo Discloses Data Breach in Ongoing Wave of Social Engineering Attacks
Apollo Global Management, one of the world’s largest private equity firms, has confirmed that it was hit by a data breach earlier this summer. The breach is part of an ongoing wave of social engineering attacks targeting the financial sector, which have also impacted several other prominent companies.
The attacks in question exploit human vulnerabilities rather than technical weaknesses. Attackers pose as IT support staff and use phone calls or emails to trick victims into revealing sensitive information or handing over control of their systems. This is often followed by extortion demands, which can range from a few million dollars to tens of thousands of dollars. In some cases, the attackers have even escalated their tactics, sending threatening messages or even coordinating swatting incidents.
Apollo’s breach was discovered between July 6 and July 10, although it’s unclear when exactly the company became aware of the intrusion. The compromised data includes sensitive personal information such as names, dates of birth, contact details, home addresses, and Social Security numbers. However, Apollo assures that there is currently no evidence to suggest that any of this data has been posted online or used for identity theft or fraud.
The breach is attributed to BlackFile, a threat group affiliated with The Com, which has split its extortion operations across four brands: Redact, Pink, Helix, and Falcon. These groups have been linked to attacks on organizations in multiple industries since the beginning of this year. What’s striking about these campaigns is their adaptability and willingness to shift from one sector to another.
As a major player in the financial sector, Apollo’s breach serves as a stark reminder that even well-protected companies can fall victim to sophisticated social engineering tactics. This emphasizes the importance of employee education and awareness when it comes to cybersecurity. Employees are often the weakest link in an organization’s defenses, and attacks like these exploit this vulnerability.
In light of this incident, we recommend that individuals take extra precautions to protect themselves from potential identity theft or other forms of exploitation. This includes monitoring credit reports, being cautious with online interactions, and avoiding sharing sensitive information unnecessarily. Furthermore, it’s essential for organizations to prioritize employee training and awareness programs to mitigate the risk of social engineering attacks in the future.
Source: CyberScoop — 2026-08-21