In a ransomware attack where data including 3TB of personal information is stolen from major insurance company AXA



It has been revealed that AXA , a major insurance and financial group, was attacked by ransomware and stolen 3 TB of data including personal information such as contractor's medical information and bank account information.

Insurer AXA hit by ransomware after dropping support for ransom payments
https://www.bleepingcomputer.com/news/security/insurer-axa-hit-by-ransomware-after-dropping-support-for-ransom-payments/

This ransomware attack was carried out by the hacker group 'Avaddon'. According to IT news site Bleeping Computer , Avaddon posted a hacking forum on May 15, 2021 saying, 'A ransomware attack was carried out against AXA's Asian base, and contracts such as medical information, bank account information, passports and other identification cards were signed. He said he posted a criminal statement saying, 'I stole 3TB of data including the person's personal information.'

Below is a 'proof of payment to a medical institution' that is part of the stolen data obtained by Bleeping Computer. If you check the contents, you can see that it contains a lot of personal information such as the date of consultation, the details of medical treatment, the name of the examinee, and the name of the payer.



Cyber attacks by Avaddon are not only ransomware attacks, but also

DDoS attacks on the Thai, Malaysia, Hong Kong, and Philippine versions of AXA's website. Bleeping Computer attempted to access the Hong Kong, Philippines, and Malaysian versions of AXA's websites on May 15, 2021 and was unable to access any of them.



AXA told Bleeping Computer, 'AXA has been hit by a ransomware attack affecting IT operations in Thailand, Malaysia, Hong Kong and the Philippines. The attack was handled by our Thai subsidiary, Inter Partners Assistance (IPA). The data was stolen, 'he admits that he was the victim of a ransomware attack.

According to Bleeping Computer, the ransom charge for this ransomware attack is unknown. In addition, AXA was reported to suspend compensation for ransom payments due to ransomware attacks in May 2021.

in Security, Posted by log1o_hf