Flagstar Bank has disclosed a massive data breach, which took place in December of last year and affects 1.5 million customers.

Flagstar Bank, a Michigan-based financial services provider and one of the largest banks in the United States, is notifying 1.5 million customers of a cyberattack during December that allowed the attacker to gain access to personal data.
See also: Emergency Windows update fixes issues on Arm devices
According to notifications sent to customers affected by the incident, the bank faced an attack when hackers breached its corporate network.
After an investigation, Flagstar Bank discovered on June 2 that attackers had access to sensitive customer information, including names and social security numbers.
“ As soon as we learned of the incident, we immediately activated our incident response plan, hired external cybersecurity with experience handling these incidents, and reported the matter to federal law enforcement professionals ,” the statement explains
“We have no evidence that any information has been misused. However, we want to inform you about the incident“.
See also: A Cloudflare outage hit many popular services
According to information submitted by the American bank to the Maine Attorney General's Office, the data breach affected 1,547,169 people in the United States.
At this time, we do not know exactly what data was breached.

To compensate for the breach, the bank is providing protection services to affected customers. Flagstar Bank will provide security for two years at no cost from the company Kroll.
Kroll is one of the top companies in mitigating such problems and addressing risk, and their team has extensive experience in assisting individuals who have suffered inadvertent exposure of their personal data .
Some of the services offered free of charge are identity monitoring, credit monitoring, fraud advice , and identity restoration after theft.
The service will provide numerous security protections to Flagstar Bank customers.
See also: BRATA: Android-wiping malware is becoming a persistent threat
Flagstar has faced another cybersecurity incident
This is the second major security incident to affect Flagstar Bank and its customers in a year. In January 2021, the Clop compromised the bank's servers using a zero-day vulnerability in Accellion FTA servers.
The now-famous Accellion hack affected many entities, including Bombardier, Singtel, New Zealand Reserve Bank, etc.
This breach resulted in Flagstar Bank being blackmailed by hackers from the Clop group, exposing customer data, and terminating the bank's partnership with the Accellion platform.
Source: www.bleepingcomputer.com
